Bulletproof SSL and TLS by Ivan Ristić
Author:Ivan Ristić
Language: eng
Format: epub
ISBN: 9781907117046
Publisher: Feisty Duck Limited
Published: 2014-07-17T16:00:00+00:00
Store keys safely
Keep a copy of your keys in a safe location. Losing a server key is usually not a big deal because you can always generate a new one, but it’s a different story altogether with keys used for intermediate and private CAs, and keys that are used for pinning.
Generating and keeping private keys in tamper-resistant hardware is the safest approach you can take, if you can afford it. Such devices are known as Hardware Storage Modules, or HSMs. If you use one of those, private keys never leave the HSM and, in fact, can’t be extracted from the device. These days, HSMs are even available as a service.[417] If you care about your security enough to think about an HSM, the idea of using one in the cloud might seem unusual. That said, given what we know about high-tech spying,[418] even when deploying in-house it might still be challenging to find a manufacturer whom you trust not to have created a backdoor into the device. After all, you don’t want to spend a lot of money on a device and only later find out that the keys can be extracted from it.
Download
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.
Sass and Compass in Action by Wynn Netherland Nathan Weizenbaum Chris Eppstein Brandon Mathis(7791)
Grails in Action by Glen Smith Peter Ledbrook(7705)
Configuring Windows Server Hybrid Advanced Services Exam Ref AZ-801 by Chris Gill(6654)
Azure Containers Explained by Wesley Haakman & Richard Hooper(6647)
Running Windows Containers on AWS by Marcio Morales(6168)
Kotlin in Action by Dmitry Jemerov(5074)
Microsoft 365 Identity and Services Exam Guide MS-100 by Aaron Guilmette(4963)
Combating Crime on the Dark Web by Nearchos Nearchou(4551)
Microsoft Cybersecurity Architect Exam Ref SC-100 by Dwayne Natwick(4429)
Management Strategies for the Cloud Revolution: How Cloud Computing Is Transforming Business and Why You Can't Afford to Be Left Behind by Charles Babcock(4425)
The Ruby Workshop by Akshat Paul Peter Philips Dániel Szabó and Cheyne Wallace(4214)
The Age of Surveillance Capitalism by Shoshana Zuboff(3964)
Python for Security and Networking - Third Edition by José Manuel Ortega(3787)
Learn Windows PowerShell in a Month of Lunches by Don Jones(3515)
The Ultimate Docker Container Book by Schenker Gabriel N.;(3454)
Mastering Python for Networking and Security by José Manuel Ortega(3359)
Learn Wireshark by Lisa Bock(3351)
Mastering Azure Security by Mustafa Toroman and Tom Janetscheck(3337)
Blockchain Basics by Daniel Drescher(3308)
