2024-05-13 17:02:09
#HTTP content negotiation has some unwritten rules for images. `Accept: image/png, */*` technically allows image/avif, but that’s not a wise interpretation.
Except what a caching proxy is supposed to do when the origin only sends AVIF?
⸻
#InfoSec #CyberSecurity #CVE #DoS #HTTP2 #Vulnerability #️⃣CatSalad
I stopped messing with client certificates and went back to good old HTTP basic authentication for my little digital light switch panel.
It's a shame nobody cares about TLS client certificates. With a bit more effort we could've gotten rid of passwords a long time ago.
I wish there was something like SSH keys for the web.
Yeah I know, Passkeys are a thing... but also not really.
#http
The history of #HTTP and the (some) stories behind status codes
https://wirekat.com/the-history-of-http-and-the-stories-behind-status-codes/