Package com.helger.commons.http
Class CHttpHeader
java.lang.Object
com.helger.commons.http.CHttpHeader
Predefined HTTP header names and values.
- Author:
- Philip Helger
-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringThe URL where the async MDN should be send to - limited to RFC 2822static final Stringstatic final StringDefined by RFC 6017static final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringThe "Proxy" header famous from the Httpoxy attack.
https://www.apache.org/security/asf-httpoxy-response.txtstatic final Stringstatic final StringThe URL where the async MDN should be send tostatic final Stringstatic final Stringstatic final Stringhttps://scotthelme.co.uk/a-new-security-header-referrer-policy/
E.g.static final Stringstatic final StringThe Retry-After response-header field can be used with a 503 (Service Unavailable) response to indicate how long the service is expected to be unavailable to the requesting client.static final Stringstatic final Stringstatic final Stringhttps://www.owasp.org/index.php/HTTP_Strict_Transport_Security
e.g.static final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringhttps://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g.static final Stringstatic final Stringhttps://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g.static final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringhttps://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g. -
Method Summary
-
Field Details
-
ACCEPT
- See Also:
-
ACCEPT_CHARSET
- See Also:
-
ACCEPT_ENCODING
- See Also:
-
ACCEPT_LANGUAGE
- See Also:
-
ACCEPT_PATCH
- See Also:
-
AGE
- See Also:
-
ALLOW
- See Also:
-
CACHE_CONTROL
- See Also:
-
CONNECTION
- See Also:
-
CONTENT_DESCRIPTION
- See Also:
-
CONTENT_DISPOSITION
- See Also:
-
CONTENT_ENCODING
- See Also:
-
CONTENT_ID
- See Also:
-
CONTENT_TYPE
- See Also:
-
COOKIE
- See Also:
-
DATE
- See Also:
-
ETAG
- See Also:
-
EXPIRES
- See Also:
-
HOST
- See Also:
-
IF_NON_MATCH
- See Also:
-
IF_MATCH
- See Also:
-
IF_MODIFIED_SINCE
- See Also:
-
IF_UNMODIFIED_SINCE
- See Also:
-
LAST_MODIFIED
- See Also:
-
LOCATION
- See Also:
-
PRAGMA
- See Also:
-
REFERER
- See Also:
-
USER_AGENT
- See Also:
-
VARY
- See Also:
-
WARNING
- See Also:
-
AUTHORIZATION
- See Also:
-
PROXY_AUTHORIZATION
- See Also:
-
WWW_AUTHENTICATE
- See Also:
-
STRICT_TRANSPORT_SECURITY
https://www.owasp.org/index.php/HTTP_Strict_Transport_Security
e.g. "max-age=16070400; includeSubDomains"- See Also:
-
X_FRAME_OPTIONS
https://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g. X-Frame-Options: deny- See Also:
-
X_XSS_PROTECTION
https://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g. X-XSS-Protection: 1; mode=block- See Also:
-
X_CONTENT_TYPE_OPTIONS
https://www.owasp.org/index.php/List_of_useful_HTTP_headers
e.g. X-Content-Type-Options: nosniff- See Also:
-
REFERRER_POLICY
https://scotthelme.co.uk/a-new-security-header-referrer-policy/
E.g. Referrer-Policy: strict-origin- See Also:
-
PROXY
The "Proxy" header famous from the Httpoxy attack.
https://www.apache.org/security/asf-httpoxy-response.txt- See Also:
-
RETRY_AFTER
The Retry-After response-header field can be used with a 503 (Service Unavailable) response to indicate how long the service is expected to be unavailable to the requesting client. This field MAY also be used with any 3xx (Redirection) response to indicate the minimum time the user-agent is asked wait before issuing the redirected request. The value of this field can be either an HTTP-date or an integer number of seconds (in decimal) after the time of the response- See Also:
-
DNT
- See Also:
-
UA
- See Also:
-
X_DEVICE_USER_AGENT
- See Also:
-
CONTENT_LANGUAGE
- See Also:
-
CONTENT_SCRIPT_TYPE
- See Also:
-
CONTENT_STYLE_TYPE
- See Also:
-
DEFAULT_STYLE
- See Also:
-
REFRESH
- See Also:
-
WINDOW_TARGET
- See Also:
-
EXT_CACHE
- See Also:
-
PICS_LABEL
- See Also:
-
X_UA_COMPATIBLE
- See Also:
-
CONTENT_LENGTH
- See Also:
-
SET_COOKIE
- See Also:
-
TRANSFER_ENCODING
- See Also:
-
ACCESS_CONTROL_ALLOW_CREDENTIALS
- See Also:
-
ACCESS_CONTROL_ALLOW_HEADERS
- See Also:
-
ACCESS_CONTROL_ALLOW_METHODS
- See Also:
-
ACCESS_CONTROL_ALLOW_ORIGIN
- See Also:
-
ACCESS_CONTROL_EXPOSE_HEADERS
- See Also:
-
ACCESS_CONTROL_MAX_AGE
- See Also:
-
ACCESS_CONTROL_REQUEST_METHOD
- See Also:
-
ACCESS_CONTROL_REQUEST_HEADERS
- See Also:
-
ORIGIN
- See Also:
-
CONTENT_SECURITY_POLICY
- See Also:
-
X_CONTENT_SECURITY_POLICY
- See Also:
-
X_WEBKIT_CSP
- See Also:
-
CONTENT_SECURITY_POLICY_REPORT_ONLY
- See Also:
-
X_CONTENT_SECURITY_POLICY_REPORT_ONLY
- See Also:
-
X_WAP_PROFILE
- See Also:
-
PROFILE
- See Also:
-
WAP_PROFILE
- See Also:
-
MAN
- See Also:
-
OPT
- See Also:
-
X_WAP_PROFILE_DIFF
- See Also:
-
PROFILE_DIFF
- See Also:
-
WAP_PROFILE_DIFF
- See Also:
-
AS2_FROM
- See Also:
-
AS2_TO
- See Also:
-
AS2_VERSION
- See Also:
-
CONTENT_TRANSFER_ENCODING
- See Also:
-
DISPOSITION_NOTIFICATION_OPTIONS
- See Also:
-
DISPOSITION_NOTIFICATION_TO
The URL where the async MDN should be send to - limited to RFC 2822- See Also:
-
FROM
- See Also:
-
MESSAGE_ID
- See Also:
-
MIME_VERSION
- See Also:
-
RECEIPT_DELIVERY_OPTION
The URL where the async MDN should be send to- See Also:
-
RECIPIENT_ADDRESS
- See Also:
-
SERVER
- See Also:
-
SUBJECT
- See Also:
-
EDIINT_FEATURES
Defined by RFC 6017- See Also:
-
VALUE_ALLOW_FROM
- See Also:
-
VALUE_DENY
- See Also:
-
VALUE_INCLUDE_SUBDOMAINS
- See Also:
-
VALUE_NOSNIFF
- See Also:
-
VALUE_SAMEORIGIN
- See Also:
-