官术网_书友最值得收藏!

Basic SSL certificates

Before we get started, let's just have a refresher on how the browser-to-server encryption works and what we need to consider. This is a very brief overview specific to a basic web server scenario, so the process can vary for different scenarios:

Following are the steps that happen in a web server scenario:

  1. First, the browser communicates with the web server and requests the start of an SSL handshake. This is also where the browser can let the server know what cipher (encryption) algorithms it will allow.
  2. Next, the server responds to the browser. At this stage, the server will confirm which cipher (based on the list provided by the browser) will be used. The server will also send a copy of the public certificate to the client. The browser will then communicate with the Certificate Authority (CA) to authenticate the certificate.
  3. Next, the key exchange is kicked off. A session key is established. This key is based on the public key on the client side and decoded by the private key on the server side.
It's important to note that the private key is never transmitted; it always remains on the server.
  1. Once the session key is complete, the client will send a final confirmation to complete the handshake and await a reciprocal finalization from the server side.
  2. Finally, we have a secure tunnel in which encrypted data can now be transmitted. This is where the actual web content can now be sent.
主站蜘蛛池模板: 阿拉善左旗| 许昌市| 扶沟县| 榕江县| 威海市| 天水市| 丹寨县| 浮梁县| 景宁| 伊通| 朝阳市| 右玉县| 龙陵县| 金溪县| 长泰县| 阳西县| 资源县| 电白县| 阿勒泰市| 洛扎县| 加查县| 泽普县| 尖扎县| 江油市| 儋州市| 略阳县| 工布江达县| 兴国县| 获嘉县| 叶城县| 盐山县| 嘉义县| 怀安县| 玛曲县| 东丽区| 永靖县| 响水县| 安溪县| 青州市| 绥中县| 天津市|