HTTP/2 200
date: Sat, 04 Oct 2025 14:07:12 GMT
content-type: text/html; charset=UTF-8
content-encoding: gzip
cache-control: max-age=2764800, private
content-language: en
content-security-policy: default-src 'self'; script-src 'self' *.nist.gov js-agent.newrelic.com bam.nr-data.net bam-cell.nr-data.net gov-bam.nr-data.net 'unsafe-inline' 'unsafe-eval' www.google-analytics.com *.googletagmanager.com platform.twitter.com https://player.vimeo.com static.cloudflareinsights.com https://challenges.cloudflare.com; style-src 'self' 'unsafe-inline' *.nist.gov fonts.googleapis.com *.typekit.net; img-src 'self' 'unsafe-inline' data: *.nist.gov *.google-analytics.com *.googletagmanager.com cdnsecakmi.kaltura.com nist-el-nfrlhrr.s3.amazonaws.com https://cdn.jsdelivr.net/npm/leaflet-fullscreen@1.0.2/dist/fullscreen@2x.png https://cdn.jsdelivr.net/npm/leaflet-fullscreen@1.0.2/dist/fullscreen.png api.mapbox.com syndication.twitter.com https://h5p.org https://i.vimeocdn.com; media-src 'self' nist-el-nfrlhrr.s3.amazonaws.com; frame-src 'self' tube.nist.gov sts.nist.gov sts2.nist.gov *.kaltura.com *.youtube.com *.arcgis.com https://platform.twitter.com/ https://player.vimeo.com *.bluejeans.com https://vimeo.com/ https://time.gov/ login.nist.gov https://customer-ltx6ylk10sje63q6.cloudflarestream.com https://challenges.cloudflare.com; frame-ancestors 'self'; child-src 'self' blob: tube.nist.gov sts.nist.gov sts2.nist.gov *.kaltura.com *.youtube.com *.arcgis.com *.time.gov login.nist.gov; font-src 'self' *.nist.gov fonts.googleapis.com fonts.gstatic.com *.typekit.net data:; connect-src 'self' bam.nr-data.net bam-cell.nr-data.net gov-bam.nr-data.net *.google-analytics.com *.analytics.google.com *.googletagmanager.com; report-uri /report-csp-violation; upgrade-insecure-requests
expires: Sun, 19 Nov 1978 05:00:00 GMT
last-modified: Sat, 04 Oct 2025 14:07:12 GMT
strict-transport-security: max-age=31536000
surrogate-control: no-store, content="BigPipe/1.0"
vary: Cookie,Accept-Encoding
via: varnish
x-ah-environment: prod
x-cache: MISS
x-content-type-options: nosniff
x-drupal-cache: UNCACHEABLE (response policy)
x-frame-options: SAMEORIGIN
x-generator: Drupal 10 (https://www.drupal.org)
x-request-id: v-6c5f296a-a12b-11f0-83ab-5369643d27d6
cf-cache-status: BYPASS
set-cookie: __cf_bm=.JuLkG99b8xcgL5uiPfV_QR2xo12RoM7URJQudaTa_Y-1759586832-1.0.1.1-rfDZ6ZlfYH6YuH_rEdTvNoGdUpEom8LaG7wbGoTUcTlBM6oCft0cy2GRb7AnySnuTOtnR2hsVHm6Rwc4GcSofnQMhgZ8_b74Z8PgyWQkZvs; path=/; expires=Sat, 04-Oct-25 14:37:12 GMT; domain=.nist.gov; HttpOnly; Secure; SameSite=None
set-cookie: _cfuvid=3xgJ8FrO1KZVgwyTWAa34rCqwTsy60V3YDWiILmBq_s-1759586832970-0.0.1.1-604800000; path=/; domain=.nist.gov; HttpOnly; Secure; SameSite=None
server: cloudflare
cf-ray: 98953e83bb5275f8-SEA
Todd Tolson | NIST
Skip to main content
Official websites use .gov
A .gov website belongs to an official government organization in the United States.
Secure .gov websites use HTTPS
A lock (
Lock
A locked padlock
) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.
Created February 22, 2024