[BCP90] Klyne, G., Nottingham, M. e J. Mogul, "Registration Procedures for Message Header Fields", BCP 90, RFC 3864, settembre 2004.
[OWASP] van der Stock, A., Ed., "A Guide to Building Secure Web Applications and Web Services", The Open Web Application Security Project (OWASP) 2.0.1, luglio 2005, http://www.owasp.org/.
[RFC2616] Fielding, R., Gettys, J., Mogul, J., Frystyk, H., Masinter, L., Leach, P. e T. Berners-Lee, "Hypertext Transfer Protocol -- HTTP/1.1", RFC 2616, giugno 1999.
[RFC2617] Franks, J., Hallam-Baker, P., Hostetler, J., Lawrence, S., Leach, P., Luotonen, A. e L. Stewart, "HTTP Authentication: Basic and Digest Access Authentication", RFC 2617, giugno 1999.
[RFC3986] Berners-Lee, T., Fielding, R. e L. Masinter, "Uniform Resource Identifier (URI): Generic Syntax", STD 66, RFC 3986, gennaio 2005.
[RFC4648] Josefsson, S., "The Base16, Base32, and Base64 Data Encodings", RFC 4648, ottobre 2006.
[RFC5226] Narten, T. e H. Alvestrand, "Guidelines for Writing an IANA Considerations Section in RFCs", BCP 26, RFC 5226, maggio 2008.
[RFC5246] Dierks, T. e E. Rescorla, "The Transport Layer Security (TLS) Protocol Version 1.2", RFC 5246, agosto 2008.