Headers always look like “Some-Name: some value”.
• Content-Type
• Date
• User-Agent
• Last-Modified
• Cache-Control
- Common headers: Cookies
- Both the client and the server send headers. Among the headers that clients send are cookies, in the “Cookie:” header.
- Trusting headers
- Headers from clients can’t be trusted; you can’t trust User-Agent, Date, HTTP-Referer, or anything else that the client sends (just look at the options in curl and HTTP Client: they can be faked easily).