How SSL works?

 

  1. Client sends "CLIENT HELLO" message with the following information:
    • Key exhange method: RSA, Diffie-Hellman, DSA
    • Cipher (way to encrypt): RC4, 3DES, AES
    • Hash (way to calculate hash for Message Authentication Code): hmac-md5, hmac-sha
    • Version of SSL
    • Random number: integer - 239248329478923
  2. Server responds with "SERVER HELLO", which contains:
    • Key exhange method: RSA, Diffie-Hellman, DSA
    • Cipher (way to encrypt): RC4, 3DES, AES
    • Hash (way to calculate hash for Message Authentication Code): hmac-md5, hmac-sha
  3. Server send "Server certificate" to the Client. Following information is included:
    • Serial number
    • Issuer
    • Valid: From-To
    • Public Key
    • Subject:
    • Site
    • Company
    • Address
  4. Client recieves "Server certificate" and then send several messages back:
    • Client Key Exchange - client and server compute master secret code, that they will use to encrypt communications
    • Change Cipher Spec
    • Finished
  5. Server responds with:
    • Change Cipher Spec
    • Finished  (This is the first message that gets encrypted by master code)

Finally, web traffic will continue to flow encrypted using master secret.

How SSL Works

Moving your apps to Amazon or Miscrosoft Clouds?

We can help you analyze your existing infrastructure, identify the cost savings we can achieve by migrating to a cloud provider. We can then execute end-to-end migration plan of your infrastructure and bringing down your TCO.

Cloud Computing

Ready for IPv6 Migration?

The Internet is running out of the equivalent of phone numbers - familiar problem, non-trivial solution.

The world has to move to IPv6, with its 128-bit addresses. But that's easier said than done.

IPv6 Migration

Are you fluent in "Linux"?

Learn Linux from a leading expert and quickly master you Linux skills.

Learn how to simplify your workflow and increase your productivity using tips and techniques of the pros.

Ideal training for Corporate IT Beginners and Advanced IT Admins alike.

Corporate Linux Training

Who's Online

We have 9 guests and no members online