Protocol-to-Origin Brian Sni ff en Mike Bishop Erik Nygren Rich - - PowerPoint PPT Presentation

protocol to origin
SMART_READER_LITE
LIVE PREVIEW

Protocol-to-Origin Brian Sni ff en Mike Bishop Erik Nygren Rich - - PowerPoint PPT Presentation

Protocol-to-Origin Brian Sni ff en Mike Bishop Erik Nygren Rich Salz Current State Who might use it? Who might use it? How to use it safely HTTP/1.1 200 OK Content-Type: image/jpeg Content-Length: 123 Protocol-To-Origin: cleartext


slide-1
SLIDE 1

Protocol-to-Origin

Brian Sniffen Mike Bishop Erik Nygren Rich Salz

slide-2
SLIDE 2

Current State

slide-3
SLIDE 3

Who might use it?

slide-4
SLIDE 4

Who might use it?

slide-5
SLIDE 5

How to use it safely

HTTP/1.1 200 OK Content-Type: image/jpeg Content-Length: 123 Protocol-To-Origin: cleartext :status = 200 content-type = image/jpeg content-length = 123 protocol-to-origin = postquantum

slide-6
SLIDE 6

How to use it safely

  • GET only
  • No /, /index.html, /index
  • Strip some unsafe things


Cookies? query parameters? other headers?