 
      
    | You are here | thehftguy.com | ||
| | | | | dadrian.io | |
| | | | | This post is about HTTPS (X.509) certificates used on the web1. It has two parts: Certificates explained without cryptography Certificates explained with cryptography The explanation with cryptography depends on the explanation without cryptography, so you'll want to either read both, or only read Part 1. Certificates and certification authorities, explained without cryptography Websites use certificates to prove that they're the "real" website2, and not an imposter. The certificate is used to bootstrap ... | |
| | | | | me.micahrl.com | |
| | | | | All rituals restricted. All rites reserved. | |
| | | | | com.micahrl.me | |
| | | | | All rituals restricted. All rites reserved. | |
| | | | | timilearning.com | |
| | | The systems we have seen so far are closed systems for which we have assumed that all the participants are trustworthy. But in an open system like the Web where anyone can take part, and there is no universally trusted authority, trust and security are top-level issues to address. Certificate Transparency is one approach to ensuring trust and improving security on the Web. | ||