Security Basics mailing list archives

Re: Re: HTTPS redirections


From: sf () frenzy org
Date: 27 Aug 2007 18:25:22 -0000

Note that since the Referer: field is passed by the client, this is relatively easy to spoof, so other security 
mechanisms should be used in conjunction with Referer field checking, if it's used at all.


Current thread: