Главная
Study mode:
on
1
Intro
2
ONLY LINK
3
TIMELINE
4
CERTIFICATES
5
DISABLE
6
CIPHER: MODE
7
ENCRYPTION: PREFER THIS
8
ENCRYPTION: FALL BACK TO
9
ENCRYPTION: DANGEROUS
10
KEY EXCHANGE
11
INTEGRITY: MACs
12
PROTOCOLS
13
CIPHER SUITES
14
VERIFY THE CERTIFICATE!
15
SYSTEM CA
16
DON'T VERIFY TRUST CHAIN
17
DON'T VERIFY HOSTNAME
18
SET SOME OPTIONS
19
FUNDAMENTAL MISCONCEPTIONS
20
VPN?
21
CERTIFICATE WARNINIGS
22
TRUST ISSUES
23
Rule of Thumb
24
STANDARD LIBRARY
25
PYOPENSSL
26
CRYPTOGRAPHY.IO
27
HOSTNAME VERIFICATION
28
SERVERS
29
CLIENTS
30
SUMMARY
31
IMPLEMENTATIONS
32
USERS
33
HOPE
Description:
Explore the complexities and vulnerabilities of SSL/TLS in this 45-minute EuroPython Conference talk. Gain a comprehensive understanding of how SSL and TLS function, their current limitations, and best practices for securing data in motion. Learn about server and client-side responsibilities for optimal security, Python alternatives for TLS implementation, crucial server configuration considerations, and potential external threats. Discover common pitfalls in TLS usage and deployment, and acquire practical strategies to enhance transport layer security in your applications. Equip yourself with the knowledge to critically assess personal and application security in an era of mass surveillance and cybercrime.

The Sorry State of SSL

EuroPython Conference
Add to list
0:00 / 0:00