chrome://net-internals/#hsts
Google Chrome 浏览器提供了一种通过页面(查询域部分)检查域的 HSTS(HTTP 严格传输安全)状态的快速方法。
查询结果如下所示:
Found:
domain: owasp.org
static_upgrade_mode: UNKNOWN
static_sts_include_subdomains:
static_pkp_include_subdomains:
static_sts_observed:
static_pkp_observed:
static_spki_hashes:
dynamic_upgrade_mode: STRICT
dynamic_sts_include_subdomains: false
dynamic_pkp_include_subdomains: false
dynamic_sts_observed: 1409173001.03746
dynamic_pkp_observed: 1409173001.03746
dynamic_spki_hashes:
这些线是什么意思?HSTS 模式是否启用?dynamic_
结果的和static_
条目有什么区别?