09.08.2015 Views

More Tricks For Defeating SSL In Practice

More Tricks For Defeating SSL In Practice

More Tricks For Defeating SSL In Practice

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

What do we have to worry about?1) Certificate Revocation●●●These days, it's all about Online Certificate StatusProtocol (OCSP).Whenever a <strong>SSL</strong> stack sees a new certificate, it makesa quick request to the OCSP URL that the signing CAembedded in it.The <strong>SSL</strong> stack receives a signed response from theOCSP provider indicating whether the certificate hasbeen revoked or not.Moxie Marlinspike<strong>In</strong>stitute <strong>For</strong> Disruptive Studies

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!