Token Binding (removed)

Token binding allows servers to cryptographically bind bearer tokens (such as cookies) to the TLS layer, to prevent attacks where an attacker exports a bearer token from the user's machine to present to a web service and impersonate the user.

Documentation

Specification

Working draft or equivalent

Status in Chromium

Blink


Removed (tracking bug) in:

  • Chrome for desktop release 70
  • Chrome for Android release 70
  • Opera release 57
  • Opera for Android release 57

Consensus & Standardization

After a feature ships in Chrome, the values listed here are not guaranteed to be up to date.

Owners

Last updated on 2018-11-19