On Wed, 14 Dec 2011 08:37:25 +0100, Ilhan Y. <[email protected]> wrote:
I want to propose "secure alternative connection for the current
connection". It has to me specified either by headers or by meta tag.
Examples:
Header example:
Secure: https://pay.reddit.com/
Meta tag example:
<meta name="secure" content="https://pay.reddit.com/">
When a user sets his web browser to connect over secure connection if
available then the browser will redirect itself to that secure
connection. Also, this is backward capable.
How is this different from a redirect?
It sounds like you might be interested in
http://tools.ietf.org/html/draft-ietf-websec-strict-transport-sec though.
--
Anne van Kesteren
http://annevankesteren.nl/