Figure two web pages that are viewed using https. They live in different domains.
How can I (reasonably) verify that someone who came to my page came through a hyperlink that is in another (specific) domain? I just want to allow traffic from this domain. Any ideas on the best way to achieve this would be appreciated.
I tried to look at HTTP_REFERER, but apparently it is not sent in this case. I know that the HTTP RFC indicates not to send referrer information from https β http, but does this also apply to https β https through ssl domains or certificates?
My domain runs on ASP.NET, if that matters. I do not control the source domain.
Thanks.
source share