What is SSL and why is it not enough when it comes to encryption?
Answer / chaitanya
SSL is identity verification, not hard data encryption. It is designed to be able to prove that the person you are talking to on the other end is who they say they are. SSL and its big brother TLS are both used almost everyone online, but the problem is because of this it is a huge target and is mainly attacked via its implementation (The Heartbleed bug for example) and its known methodology. As a result, SSL can be stripped in certain circumstances, so additional protections for data-in-transit and data-at-rest are very good ideas.
| Is This Answer Correct ? | 0 Yes | 1 No |
What are accessories in computer?
What is the CIA triangle?
Why would you bring in an outside contractor to perform a penetration test?
Does indexing slow down computer?
What are the three ways to authenticate a person?
On a Windows network, why is it easier to break into a local account than an AD account?
How many security protocols available?
What is data source in computer?
What do you think of social networking sites such as Facebook and LinkedIn?
Why is deleted data not truly gone when you delete it?
What is worse in Firewall Detection, a false negative or a false positive? And why?
You are remoted in to a headless system in a remote area. You have no physical access to the hardware and you need to perform an OS installation. What do you do?