OpenSSL Cookbook

OpenSSL Cookbook pdf epub mobi txt 電子書 下載2025

出版者:Feisty Duck Ltd
作者:Ivan Ristić
出品人:
頁數:60
译者:
出版時間:2013-10-2
價格:0.99 USD
裝幀:Kindle Ed.
isbn號碼:9781907117053
叢書系列:
圖書標籤:
  • 安全
  • openssl
  • SSL/TLS
  • 密碼學
  • 網絡
  • PKI
  • 計算機
  • 網絡安全
  • OpenSSL
  • Cryptography
  • SSL/TLS
  • Security
  • Network Security
  • Cookbook
  • Programming
  • Linux
  • macOS
  • Windows
  • DevOps
想要找書就要到 小美書屋
立刻按 ctrl+D收藏本頁
你會得到大驚喜!!

具體描述

A guide to the most frequently used OpenSSL features and commands, written by Ivan Ristic.

* Comprehensive coverage of OpenSSL installation, configuration, and key and certificate management

* Includes SSL/TLS Deployment Best Practices, a design and deployment guide

* Written by a well-known practitioner in the field and the author of SSL Labs and the SSL/TLS configuration assessment tool

* Available in a variety of digital formats (PDF, EPUB, Mobi/Kindle); no DRM

* Continuously updated

OpenSSL Cookbook is built around one chapter from Bulletproof SSL/TLS and PKI, a larger work that provides complete coverage of SSL/TLS and PKI topics. For more information and other digital formats (PDF, EPUB, ...) please visit feistyduck.com/books/openssl-cookbook/

著者簡介

Ivan Ristić is a security researcher, engineer, and author, known especially for his contributions to the web application firewall field and development of ModSecurity, an open source web application firewall, and for his SSL/TLS and PKI research, tools and guides published on the SSL Labs web site.

He is the author of two books, Apache Security and ModSecurity Handbook, which he publishes via Feisty Duck, his own platform for continuous writing and publishing. Ivan is an active participant in the security community and you'll often find him speaking at security conferences such as Black Hat, RSA, OWASP AppSec, and others. He's currently Director of Application Security Research at Qualys.

圖書目錄

Preface

Chapter 1. OpenSSL Cookbook
Getting Started
Determine OpenSSL Version and Configuration
Building OpenSSL
Examine Available Commands
Building a Trust Store

Key and Certificate Management
Key Generation
Creating Certificate Signing Requests
Creating CSRs from Existing Certificates
Unattended CSR Generation
Signing Your Own Certificates
Creating Certificates Valid for Multiple Hostnames
Examining Certificates
Key and Certificate Conversion
Configuration
Cipher Suite Selection
Performance

Appendix A: SSL/TLS Deployment Best Practices
Introduction

1. Private Key and Certificate
1.1. Use 2048-bit Private Keys
1.2. Protect Private Keys
1.3. Ensure Sufficient Hostname Coverage
1.4. Obtain Certificates from a Reliable CA

2. Configuration
2.1. Deploy with Complete and Valid Certificate Chains
2.2. Use Only Secure Protocols
2.3. Use Only Secure Cipher Suites
2.4. Control Cipher Suite Selection
2.5. Support Forward Secrecy
2.6. Disable Client-Initiated Renegotiation
2.7. Mitigate Known Problems

3. Performance
3.1. Do Not Use Too-Strong Private Keys
3.2. Ensure That Session Resumption Works Correctly
3.3. Use Persistent Connections (HTTP)
3.4. Enable Caching of Public Resources (HTTP)

4. Application Design (HTTP)
4.1. Encrypt 100% of Your Web Site
4.2. Avoid Mixed Content
4.3. Understand and Acknowledge Third-Party Trust
4.4. Secure Cookies
4.5. Deploy HTTP Strict Transport Security
4.6. Disable Caching of Sensitive Content
4.7. Ensure That There Are No Other Vulnerabilities

5. Validation

6. Advanced Topics
· · · · · · (收起)

讀後感

評分

評分

評分

評分

評分

用戶評價

评分

這目錄跟沒有一樣,找東西靠搜索……

评分

作為openssl的SOP還不錯,若能介紹一些更為前沿一點的東西就更好瞭

评分

openssl實在是太強大瞭,一本大埠頭的書恐怕都很難講清楚。本書十分“輕靈”,有一點a bite of openssl的意思,openssl主要的應用和相關的命令基本都涉及到瞭,把openssl應用的“招牌菜“做瞭介紹。

评分

說起來慚愧,這是第一本從頭看到尾的英文書,確實加深瞭對https的理解。HSTS,CSP概念也第一次接觸,後續不怕跟客戶溝通這一塊內容瞭

评分

作為openssl的SOP還不錯,若能介紹一些更為前沿一點的東西就更好瞭

本站所有內容均為互聯網搜索引擎提供的公開搜索信息,本站不存儲任何數據與內容,任何內容與數據均與本站無關,如有需要請聯繫相關搜索引擎包括但不限於百度google,bing,sogou

© 2025 book.quotespace.org All Rights Reserved. 小美書屋 版权所有