What is SSL and why is it not enough when it comes to encryption?
Answer / chaitanya
SSL is identity verification, not hard data encryption. It is designed to be able to prove that the person you are talking to on the other end is who they say they are. SSL and its big brother TLS are both used almost everyone online, but the problem is because of this it is a huge target and is mainly attacked via its implementation (The Heartbleed bug for example) and its known methodology. As a result, SSL can be stripped in certain circumstances, so additional protections for data-in-transit and data-at-rest are very good ideas.
| Is This Answer Correct ? | 0 Yes | 1 No |
How do you protect your home Wireless Access Point?
What is a spooler on a computer?
What is the difference between closed-source and open-source? Which is better?
What is XSS?
What’s better, a red team or a blue team?
You see a user logging in as root to perform basic functions. Is this a problem?
What is your opinion on hacktivist groups such as Anonymous?
You find out that there is an active problem on your network. You can fix it, but it is out of your jurisdiction. What do you do?
What is residual risk?
What is SSL and why is it not enough when it comes to encryption?
Does indexing slow down computer?
What is data protection in transit vs data protection at rest?