This blog post covers the four YouTube sessions in which Tanya Janca and I implemented Transport Layer Security (TLS) and security-related HTTP response headers (security headers) on our project website, I would like to summarize what we have implemented and why!

Tanya wrote a blog post on the same topic. If you want to know how to implement this from a startup.cs file in her .Net Core app on Azure, have a look at it!

You can find the sessions on the OWASP DevSlop channel on YouTube.

For an introduction to these OWASP DevSlop shows and the OWASP DevSlop…

