TLS Cryptography In-Depth: Explore the intricacies of modern cryptography and the inner workings of TLS
暫譯: 深入探討TLS加密技術:探索現代加密技術的複雜性及TLS的內部運作

Duplys, Paul, Schmitz, Roland

  • 出版商: Packt Publishing
  • 出版日期: 2024-01-29
  • 售價: $2,050
  • 貴賓價: 9.5$1,948
  • 語言: 英文
  • 頁數: 712
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1804611956
  • ISBN-13: 9781804611951
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

商品描述

A practical introduction to modern cryptography using the Transport Layer Security protocol as the primary reference


Key Features:


  • Learn about real-world cryptographic pitfalls and how to avoid them
  • Understand past attacks on TLS, how these attacks worked, and how they were fixed
  • Discover the inner workings of modern cryptography and its application within TLS
  • Purchase of the print or Kindle book includes a free PDF eBook


Book Description:


TLS is the most widely used cryptographic protocol today, enabling e-commerce, online banking, and secure online communication. TLS Cryptography in Depth will help you gain a deep understanding of how and why TLS works, how past attacks on TLS were possible, and how vulnerabilities that enabled them were addressed in the latest TLS version 1.3. By exploring the inner workings of TLS, you'll be able to configure it and use it more securely.


Starting with the basic concepts, you'll be led step by step through the world of modern cryptography, guided by the TLS protocol. As you advance, you'll be learning about the necessary mathematical concepts from scratch. Even seemingly arcane topics such as public-key cryptography based on elliptic curves will be explained with a view on real-world applications in TLS. With easy-to-understand concepts, you'll find out how secret keys are generated and exchanged in TLS, and how they are used to create a secure channel between a client and a server.


By the end of this book, you'll have understood the inner workings of TLS and how to configure TLS servers securely. Moreover, you'll have gained a deep knowledge of the cryptographic primitives that make up TLS and will be able to apply this knowledge in other security-related contexts.


What You Will Learn:


  • Understand TLS principles and protocols for secure internet communication
  • Find out how cryptographic primitives are used within TLS V1.3
  • Discover best practices for secure configuration and implementation of TLS
  • Evaluate and select appropriate cipher suites for optimal security
  • Get an in-depth understanding of common cryptographic vulnerabilities and ways to mitigate them
  • Explore forward secrecy and its importance in maintaining confidentiality
  • Understand TLS extensions and their significance in enhancing TLS functionality


Who this book is for:


This book is for IT professionals, cybersecurity professionals, security engineers, cryptographers, software developers, and administrators looking to gain a solid understanding of TLS specifics and their relationship with cryptography. This book can also be used by computer science and computer engineering students to learn about key cryptographic concepts in a clear, yet rigorous way with its applications in TLS. There are no specific prerequisites, but a basic familiarity with programming and mathematics will be helpful.

商品描述(中文翻譯)

實用的現代密碼學入門,以傳輸層安全協議(Transport Layer Security)為主要參考


主要特點:



  • 了解現實世界中的密碼學陷阱及如何避免它們

  • 理解過去對 TLS 的攻擊、這些攻擊是如何運作的,以及如何修復這些問題

  • 探索現代密碼學的內部運作及其在 TLS 中的應用

  • 購買印刷版或 Kindle 書籍可獲得免費 PDF 電子書


書籍描述:


TLS 是當今最廣泛使用的密碼學協議,支持電子商務、網上銀行和安全的在線通信。《深入了解 TLS 密碼學》將幫助您深入理解 TLS 的運作原理及其原因,過去對 TLS 的攻擊是如何發生的,以及使這些攻擊得以實現的漏洞在最新的 TLS 版本 1.3 中是如何被解決的。通過探索 TLS 的內部運作,您將能夠更安全地配置和使用它。


從基本概念開始,您將在 TLS 協議的指導下逐步進入現代密碼學的世界。隨著進展,您將從零開始學習必要的數學概念。即使是看似深奧的主題,如基於橢圓曲線的公鑰密碼學,也將以現實世界在 TLS 中的應用為視角進行解釋。通過易於理解的概念,您將了解在 TLS 中如何生成和交換秘密金鑰,以及它們如何用於在客戶端和伺服器之間建立安全通道。


在本書結束時,您將理解 TLS 的內部運作以及如何安全地配置 TLS 伺服器。此外,您將深入了解構成 TLS 的密碼學原語,並能夠在其他安全相關的上下文中應用這些知識。


您將學到的內容:



  • 理解 TLS 原則和協議以實現安全的互聯網通信

  • 了解 TLS V1.3 中如何使用密碼學原語

  • 發現安全配置和實施 TLS 的最佳實踐

  • 評估和選擇適當的加密套件以達到最佳安全性

  • 深入了解常見的密碼學漏洞及其緩解方法

  • 探索前向保密性及其在維護機密性中的重要性

  • 理解 TLS 擴展及其在增強 TLS 功能中的重要性


本書適合誰:


本書適合 IT 專業人員、網絡安全專業人員、安全工程師、密碼學家、軟體開發人員和管理員,旨在幫助他們深入了解 TLS 的具體內容及其與密碼學的關係。本書也可供計算機科學和計算機工程的學生使用,以清晰而嚴謹的方式學習關鍵的密碼學概念及其在 TLS 中的應用。沒有特定的先決條件,但對編程和數學的基本熟悉將會有所幫助。