gpt4 book ai didi

security - SSL 是否提供点对点安全性?

转载 作者:太空宇宙 更新时间:2023-11-03 12:53:36 25 4
gpt4 key购买 nike

根据以下引述,SSL 提供点对点安全:

Transport security is used to provide point-to-point security between the two endpoints (service and client). If there are intermediary systems between the client and the server, each intermediate point must forward the message over a new SSL connection.

a) 提供点对点安全性的 SSL 是什么意思?

b) 如果中间系统(位于客户端和服务器之间)通过非 SSL 连接转发消息,客户端和服务器之间是否仍然可以进行 SSL 通信?

c) 假设这是可能的......我不明白为什么中间系统通过非 SSL 连接转发消息会提供较低的安全性,因为消息已经被原始发件人(客户端或服务器)加密并且因此不能被中间系统解密?

谢谢

编辑:

One limitation of transport security is that it relies on every “step” and participant in the network path having consistently configured security. In other words, if a message must travel through an intermediary before reaching its destination, there is no way to ensure that transport security has been enabled for the step after the intermediary (unless that interme- diary is fully controlled by the original service provider). If that security is not faithfully reproduced, the data may be compromised downstream. In addition, the intermediary itself must be trusted not to alter the message before continuing transfer. These considerations are especially important for services available via Internet-based routes, and typically less important for systems exposed and consumed within a corporate intranet.

Message security focuses on ensuring the integrity and privacy of individ- ual messages, without regard for the network. Through mechanisms such as encryption and signing via public and private keys, the message will be protected even if sent over an unprotected transport (such as plain HTTP).

最佳答案

我认为该引用的上下文与您假设的不同;对于“中间系统”,我认为这句话的意思是必须在中间访问消息的系统(有意或无意)...不仅仅是路由器,而是实际解密、查看和/或修改消息的东西。

因此,因为 SSL 是“点对点”的,如果不建立另一个单独的连接,上述内容实际上是不可能的。

关于security - SSL 是否提供点对点安全性?,我们在Stack Overflow上找到一个类似的问题: https://stackoverflow.com/questions/4280145/

25 4 0
Copyright 2021 - 2024 cfsdn All Rights Reserved 蜀ICP备2022000587号
广告合作:1813099741@qq.com 6ren.com