[BCP90] Klyne, G., Nottingham, M. et J. Mogul, « Registration Procedures for Message Header Fields », BCP 90, RFC 3864, septembre 2004.
[OWASP] van der Stock, A., Ed., « A Guide to Building Secure Web Applications and Web Services », The Open Web Application Security Project (OWASP) 2.0.1, juillet 2005, http://www.owasp.org/.
[RFC2616] Fielding, R., Gettys, J., Mogul, J., Frystyk, H., Masinter, L., Leach, P. et T. Berners-Lee, « Hypertext Transfer Protocol -- HTTP/1.1 », RFC 2616, juin 1999.
[RFC2617] Franks, J., Hallam-Baker, P., Hostetler, J., Lawrence, S., Leach, P., Luotonen, A. et L. Stewart, « HTTP Authentication: Basic and Digest Access Authentication », RFC 2617, juin 1999.
[RFC3986] Berners-Lee, T., Fielding, R. et L. Masinter, « Uniform Resource Identifier (URI): Generic Syntax », STD 66, RFC 3986, janvier 2005.
[RFC4648] Josefsson, S., « The Base16, Base32, and Base64 Data Encodings », RFC 4648, octobre 2006.
[RFC5226] Narten, T. et H. Alvestrand, « Guidelines for Writing an IANA Considerations Section in RFCs », BCP 26, RFC 5226, mai 2008.
[RFC5246] Dierks, T. et E. Rescorla, « The Transport Layer Security (TLS) Protocol Version 1.2 », RFC 5246, août 2008.