Skip to content
Top Menu
September 7, 2026
  • Privacy
  • Cookies
  • Write for us
  • Advertising
  • Donate
  • Partners
  • Twitter
  • YouTube
  • Google+
  • Google+
  • Facebook
  • LinkedIn
  • Medium
  • Tumblr
  • Instagram
  • Pinterest
  • Flickr
Ryadel

Ryadel

Web Development, Networking, Security, SEO

  • About us
    • Projects & Works
      • Show All
      • AkkiApp
      • CORSflare
      • dir2json
      • DownPicker
      • jquery.scrolling
      • Know
      • MergeTIFF
      • P7M Convert
      • P7M Studio
      • Publicize With Hashtags
      • RegEx Splitter
      • REPflare
      • Source Control Switcher
      • Tabulazer
      • VotinApp
    • Services
      • Remote Assistance
      • Software Development
      • Training Courses
      • Your IP Address
    • Contacts and Quotes
    • Advertising Info
  • Coding
    • AI & Machine Learning
    • Android Studio
    • ASP.NET
    • C#
    • HTML & CSS
    • JavaScript
    • PHP
    • SQL
    • Xcode & iOS
  • Operating Systems
    • Windows
    • Linux
    • macOS
    • Android
    • iOS
  • Hardware
    • CPU & GPU
    • Mobile Devices
    • Network Devices
    • Printers and Scanners
  • Software
    • Applications
    • Tools & Utilities
  • Web
    • SEO & Marketing
    • Servers & Networks
    • Cyber Security
    • Privacy & GDPR
    • Social Networks
    • Cloud
  • Italiano

Tag: HTTP Security Headers

Applications / Linux / Servers & Services / Software / Web

NGINX - Access-Control-Allow-Origin - CORS policy settings How to properly set the Access-Control-Allow-Origin header to NGINX to allow Cross Request Resource Sharing for all (or specific) sites

August 14, 2019August 14, 2019 - by Ryan - 1 Comment

Those who often read this blog already know that we're deeply in love with NGINX, a lightweight, high-performance and open-source web server and reverse proxy used by more than 358 …

NGINX - Access-Control-Allow-Origin - CORS policy settings How to properly set the Access-Control-Allow-Origin header to NGINX to allow Cross Request Resource Sharing for all (or specific) sites Read More
Cyber Security / Servers & Services / Web

Expect-CT - A new HTTP Security Header to be aware of A new HTTP header that allows web host operators to instruct user agents to expect valid Signed Certificate Timestamps (SCTs) to be served on connections to these hosts.

March 17, 2019September 25, 2019 - by Ryan - 10 Comments.

I'm writing this post as a follow-up of this article about HTTP Security Headers that I wrote a year ago to introduce a new kid on the block: its name …

Expect-CT - A new HTTP Security Header to be aware of A new HTTP header that allows web host operators to instruct user agents to expect valid Signed Certificate Timestamps (SCTs) to be served on connections to these hosts. Read More
Cyber Security / Servers & Services / Web

NGINX - How to setup the nginx.conf file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to setup the nginx.conf to secure all your Nginx-hosted websites with the required HTTP Security Headers and get A rate from securityheaders.io scan.

November 5, 2018August 14, 2019 - by Ryan - 2 Comments.

We already explained the basics about HTTP Security Headers in this previous post: it's now time to put all these words into action and learn how we can implement them …

NGINX - How to setup the nginx.conf file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to setup the nginx.conf to secure all your Nginx-hosted websites with the required HTTP Security Headers and get A rate from securityheaders.io scan. Read More
Cyber Security / Servers & Services / Web

Apache - How to setup the httpd.conf file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to setup the httpd.conf to secure all your Apache-hosted websites with the required HTTP Security Headers and get A rate from securityheaders.io scan.

November 22, 2017March 17, 2019 - by Ryan - 8 Comments.

We already explained the basics about HTTP Security Headers in this previous post: it's now time to put these concepts into action and implement them within our Apache-based web site …

Apache - How to setup the httpd.conf file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to setup the httpd.conf to secure all your Apache-hosted websites with the required HTTP Security Headers and get A rate from securityheaders.io scan. Read More
Cyber Security / Servers & Services / Web

IIS - How to setup the web.config file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to tweak your web application's web.config file to secure your Windows + IIS hosted website with the required HTTP Security Headers and get A rate from securityheaders.io scan.

November 22, 2017March 17, 2019 - by Ryan - 7 Comments.

We already explained the basics about HTTP Security Headers in this previous post: it's now time to put all these words into action and learn how we can implement them …

IIS - How to setup the web.config file to send HTTP Security Headers with your web site (and score an A on securityheaders.io) How to tweak your web application's web.config file to secure your Windows + IIS hosted website with the required HTTP Security Headers and get A rate from securityheaders.io scan. Read More
Cyber Security / Servers & Services / Web

What are HTTP Security Headers and how to properly implement them in IIS, Apache and Nginx to secure your web site

November 22, 2017November 5, 2018 - by Ryan - 3 Comments.

Did you ever heard the statement "a fish rots from the head down"? This phrase is often used to blame the leadership for the failure of an organization, but it …

What are HTTP Security Headers and how to properly implement them in IIS, Apache and Nginx to secure your web site Read More
Learn how to build next-gen Web Apps and Microservices with a Full-Stack approach using the most advanced front-end and back-end frameworks available today!
Create fully featured APIs with the ASP.NET Core framework! This practical guide shows you how to design and implement APIs using the REST and GraphQL standards. Available today for Early Access purchase with a 50% discount using the au35san promo code, valid for all Manning catalog!
Get it on manning.com or amazon.com
My Tweets

Categories

  • Business processes (118)
    • Agile (7)
    • Business innovation (66)
    • Cryptocurrencies (2)
    • Customer Services (11)
    • DevOps (17)
    • Internet of Things (6)
    • Jobs & Careers (28)
    • Process management (28)
  • Coding (533)
    • AI & Machine Learning (27)
    • Android Studio (6)
    • ASP.NET (202)
    • C# (199)
    • HTML & CSS (39)
    • JavaScript (73)
    • PHP (68)
    • SQL (45)
    • Xcode & iOS (10)
  • Design (113)
    • Graphics (42)
    • Photo & Video Editing (31)
    • UI, UX & Layout (37)
  • Hardware (70)
    • CPU & GPU (4)
    • Gaming consoles (1)
    • Mobile Devices (30)
    • Network Devices (7)
    • Printers and Scanners (1)
    • RAM, HDD & SSD (5)
  • Operating Systems (314)
    • Android (33)
    • iOS (30)
    • Linux (57)
    • macOS (36)
    • Windows (198)
  • Other stuff (13)
  • Software (340)
    • Applications (116)
    • Tools & Utilities (250)
    • Videogames (8)
  • Web (674)
    • Cloud (66)
    • Cyber Security (212)
      • Data Security (50)
    • Privacy & Compliance (70)
    • SEO & Marketing (105)
    • Servers & Services (306)
    • Social Networks (15)
    • Spam and Scam Alert (11)

Archives

Tag Cloud

.NET .NET Core AI Android Angular Angular 5 Antivirus ASP.NET ASP.NET Core ASP.NET MVC Azure Backup C# CentOS EF Core Entity Framework GDPR GitHub Google HTTP HTTPS IIS iOS Javascript Linux macOS Malware Marketing Microsoft MySQL Nginx PHP PowerShell Privacy Security SEO SQL Server SSL TLS Visual Studio VPN Windows Windows 10 Windows Server WordPress

Feed

  • RSS
  • Atom
  • Comments RSS
HTML5 Powered with Connectivity / Realtime, CSS3 / Styling, Multimedia, Performance & Integration, and Semantics

Categories

  • Agile (7)
  • AI & Machine Learning (27)
  • Android (33)
  • Android Studio (6)
  • Applications (116)
  • ASP.NET (202)
  • Business innovation (66)
  • Business processes (85)
  • C# (199)
  • Cloud (66)
  • Coding (491)
  • CPU & GPU (4)
  • Cryptocurrencies (2)
  • Customer Services (11)
  • Cyber Security (200)
  • Data Security (50)
  • Design (88)
  • DevOps (17)
  • Gaming consoles (1)
  • Graphics (42)
  • Hardware (49)
  • HTML & CSS (39)
  • Internet of Things (6)
  • iOS (30)
  • JavaScript (73)
  • Jobs & Careers (28)
  • Linux (57)
  • macOS (36)
  • Mobile Devices (30)
  • Network Devices (7)
  • Operating Systems (189)
  • Other stuff (13)
  • Photo & Video Editing (31)
  • PHP (68)
  • Printers and Scanners (1)
  • Privacy & Compliance (70)
  • Process management (28)
  • RAM, HDD & SSD (5)
  • SEO & Marketing (105)
  • Servers & Services (306)
  • Social Networks (15)
  • Software (213)
  • Spam and Scam Alert (11)
  • SQL (45)
  • Tools & Utilities (250)
  • UI, UX & Layout (37)
  • Videogames (8)
  • Web (507)
  • Windows (198)
  • Xcode & iOS (10)

Recent Posts

  • How to Convert OST to PST with Stellar Converter for OST
  • MEM: Persistent Operating Memory for AI Agents
  • Extraction shooters and late capitalism: a genre that mirrors our age
  • Harpyx: Open-Source Platform for RAG-Based Document Intelligence
  • Advanced configuration strategies for ASP.NET Core projects
  • What to Consider Before Outsourcing Software Quality Assurance
  • UncannyPrompt: Open-Source AI Prompt Management for Teams
  • ASP.NET Core Observability: OpenTelemetry, Serilog, Metrics and Health Checks
  • Stop Double Typing: A Global AutoHotkey Debounce Fix for “Chattering” Keyboards
  • Tabulazer Chrome Extension for HTML Tables gets a Major Update
  • ClawTalk: A Talk-to-Your-Assistant Chrome Extension for OpenClaw
  • World Models vs Video Games: why AI will not kill gaming
  • Best AI Chatbot solutions for small business: 2026 comparison
  • ASP.NET Core Background Jobs with RabbitMQ: Reliable Patterns for HTTP Offloading

Recent Comments

  • Paul L. on Windows 11 Installer Stuck at 46% - How to Fix It
  • Paul L. on Windows 11 Installer Stuck at 46% - How to Fix It
  • chebabha ABD on Visual Studio 2019, 2017, 2015, 2013, 2012 & more - Download ISO (Offline Installer)
  • Geir on Stop Double Typing: A Global AutoHotkey Debounce Fix for “Chattering” Keyboards
  • Leticia Gabriel on AudFree Spotify Music Converter and DRM Audio Converter - Review
  • Anna Lepos on Enable NTFS or Win32 long paths policy to remove the 255-260 characters limit in Windows 10
  • Jurgen Vanmassenhove on Visual Studio - parameter instance with value null (and other design errors) when opening XSD files
  • Alan on Here's why you should NOT buy a Sabrent Rocket SSD
  • Rashmi Rathore on Performance Improvements in ASP.NET Core 9
  • asdf on Boss GX-100 Firmware Update Guide
  • Tim on Unable to launch the IIS Express Web server error on Visual Studio 2015 - How to fix it
  • Alan Shelby on Stellar Repair for Photo - Review and Test Drive
VAT ID: IT 13232371008 - REA: RM-1431325
Theme and Layout by Ryadel & Hanahaki
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Loading Comments...