Bulletproof SSL and TLS by Ivan Ristić
Author:Ivan Ristić
Language: eng
Format: epub
ISBN: 9781907117046
Publisher: Feisty Duck Limited
Published: 2014-07-17T16:00:00+00:00
Store keys safely
Keep a copy of your keys in a safe location. Losing a server key is usually not a big deal because you can always generate a new one, but it’s a different story altogether with keys used for intermediate and private CAs, and keys that are used for pinning.
Generating and keeping private keys in tamper-resistant hardware is the safest approach you can take, if you can afford it. Such devices are known as Hardware Storage Modules, or HSMs. If you use one of those, private keys never leave the HSM and, in fact, can’t be extracted from the device. These days, HSMs are even available as a service.[417] If you care about your security enough to think about an HSM, the idea of using one in the cloud might seem unusual. That said, given what we know about high-tech spying,[418] even when deploying in-house it might still be challenging to find a manufacturer whom you trust not to have created a backdoor into the device. After all, you don’t want to spend a lot of money on a device and only later find out that the keys can be extracted from it.
Download
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.
Sass and Compass in Action by Wynn Netherland Nathan Weizenbaum Chris Eppstein Brandon Mathis(7447)
Grails in Action by Glen Smith Peter Ledbrook(7336)
Kotlin in Action by Dmitry Jemerov(4692)
Management Strategies for the Cloud Revolution: How Cloud Computing Is Transforming Business and Why You Can't Afford to Be Left Behind by Charles Babcock(4167)
The Age of Surveillance Capitalism by Shoshana Zuboff(3472)
Learn Windows PowerShell in a Month of Lunches by Don Jones(3284)
Mastering Azure Security by Mustafa Toroman and Tom Janetscheck(3060)
Mastering Python for Networking and Security by José Manuel Ortega(3016)
Configuring Windows Server Hybrid Advanced Services Exam Ref AZ-801 by Chris Gill(2968)
Microsoft 365 Identity and Services Exam Guide MS-100 by Aaron Guilmette(2941)
Blockchain Basics by Daniel Drescher(2933)
Azure Containers Explained by Wesley Haakman & Richard Hooper(2862)
TCP IP by Todd Lammle(2677)
From CIA to APT: An Introduction to Cyber Security by Edward G. Amoroso & Matthew E. Amoroso(2520)
Combating Crime on the Dark Web by Nearchos Nearchou(2512)
Hands-On Azure for Developers by Kamil Mrzyglod(2472)
Running Windows Containers on AWS by Marcio Morales(2391)
React Native - Building Mobile Apps with JavaScript by Novick Vladimir(2365)
The Social Psychology of Inequality by Unknown(2351)