Overview SSL (Secure Socket Layer) is a security mechanism that runs between the application layer and the TCP layer, ensuring the confidentiality and integrity of upper-layer application data transmission and the legitimacy of the identities of both parties in the transmission.
SSL protocols include: Handshake protocol, SSL password change protocol, Alert protocol, and Record protocol. The handshake protocol is the first subprotocol of SSL connection communication and is also the most complex protocol. SSL Layered Structure SSL Handshake Protocol Through the handshake process, the client and the server negotiate session parameters (including mutual authentication, negotiation of encryption and MAC algorithms, generation of session keys, etc.). SSL handshake protocol process Phase 1: Building security capabilities Client - client_hello:
Server-server_hello:
Phase 2: Server Authentication and Key Exchange
The server's digital certificate containing the public key information or the complete certificate chain to the CA. Server-server_key_exchange:
Server-certificate_request:
Server-server_hello_done:
Phase 3: Client Authentication and Key Exchange Client-certificate:
Client-client_key_exchange:
client-certificate_verify:
Phase 4: Completion client-change_cipher_spec:
Client-finished:
Server-change_cipher_spec:
Server-finished:
|
>>: 5G phones are now online. How long can 4G phones last? Can old phones use 5G networks?
The rat has gone and the ox has come, bringing ne...
Launchvps released a Black Friday discount plan, ...
With hundreds or even thousands of parameter comb...
Recently, Google executives admitted that the Uni...
The so-called change of perspective is to start f...
“While the discussion and hype around 5G has focu...
As cybersecurity threats continue to evolve and e...
It's been a long time since I shared informat...
It is not easy to "steer" China Mobile....
Today we will analyze the HTTP protocol, which is...
If you don't talk about AI after dinner, you ...
Recently, the Pudong New Area's "Governm...
Didn't I buy a VPS with annual payment from B...
The results of the bidding for 5G wireless main e...