HTTPS Token Binding with TLS Terminating Reverse Proxies

Brian Campbell · 2017

This document defines common HTTP header fields that enable a TLS terminating reverse proxy to convey information about the validated Token Binding Message sent by the client to a backend server, which enables that backend server to bind, or verify the binding of, cookies and other security tokens to the client's Token Binding key.

Read the paper · More papers on PaperTik