HTTPS, SSL, историческое примечание TLS, HTTP-сертификат, удостоверяющий центр, алгоритмы шифрования, устаревшие алгоритмы, протокол ACME.
19 листов + список литературы. Без введения и заключения
1. HTTPS, SSL и TLS 3
1.1. HTTPS и HTTP 3
1.2. SSL 4
1.3. Версии и переход к TLS 6
2. TLS: принципы и алгоритмы 8
2.1. Принцип работы TLS 8
2.2. Алгоритмы 11
3. Сертификация 15
3.1. SSL-сертификаты 15
3.2. Центры сертификации 17
3.3. Протокол ACME 18
Список использованных источников 22
1. Барнс Р. ACME: автоматизированная среда управления сертификатами на службе безопасности / Отчет о конференции IETF 93, июль 2015 года, Прага, Чехия // Журнал IETF - Ноябрь 2015 - Т.11, В-2. - С. 4-26.
2. B. Anderson. Limitless HTTP in an HTTPS World: Inferring the Semantics of the HTTPS Protocol without Decryption - Cisco Systems Inc. 2018 - 15 p.
3. E. Lucas. Cyberphobia: Identity, Trust, Security and the Internet - 50 Bedford Square, London, WC1B 3DP, UK. Bloomsbury Publishing, 2015 - 309 p.
4. E. Rescorla. The Transport Layer Security (TLS) Protocol Version 1.3 - RTFM Inc. March 20, 2018 - 156 p.
5. ISO/IEC 10116:2017 - Information technology. Security techniques. Modes of operation for an n-bit block cipher.
6. RFC 1321 - The MD5 Message-Digest Algorithm
7. RFC 2104 - HMAC: Keyed-Hashing for Message Authentication
8. RFC 2246 - The TLS Protocol Version 1.0
9. RFC 2268 - A Description of the RC2(r) Encryption Algorithm
10. RFC 2818 - HTTP Over TLS
11. RFC 2986 - PKCS #10: Certification Request Syntax Specification Version 1.7
12. RFC 3174 - US Secure Hash Algorithm 1 (SHA1)
13. RFC 4269 - The SEED Encryption Algorithm
14. RFC 4346 - The Transport Layer Security (TLS) Protocol Version 1.1
15. RFC 4757 - Deprecate DES, RC4-HMAC-EXP, and Other Weak Cryptographic Algorithms in Kerberos
16. RFC 5077 - Transport Layer Security (TLS) Session Resumption without Server-Side State
17. RFC 5246 - The Transport Layer Security (TLS) Protocol Version 1.2
18. RFC 5932 - Camellia Cipher Suites for TLS
19. RFC 6176 - Prohibiting Secure Sockets Layer (SSL) Version 2.0
20. RFC 6234 - US Secure Hash Algorithms (SHA and SHA-based HMAC and HKDF)
21. FIPS PUB 197 - Announcing the Advanced Encryption Standard (AES)
22. FIPS PUB 46-3 - Data Encryption Standard (DES)
23. Patent US 5231668A - Digital Signature Algorithm
24. US-CERT. TA14-290A - SSL 3.0 Protocol Vulnerability and POODLE Attack.
25. National Institute of Standards and Technology Communications Security Establishment - Implementation Guidance for FIPS PUB 140-2 and the Cryptographic Module Validation Program.
26. R. Barnes. Automatic Certificate Management Environment (ACME) draft-ietf-acme-acme-07 - ACME Working Group, December 23, 2017 - 74 p.
27. R. Barnes. Automatic Certificate Management Environment (ACME) draft-ietf-acme-acme-12 - ACME Working Group, October 26, 2018 - 82 p.
28. W.M. Shbair, T. Cholez, A. Goichot, I. Chrisment Efficiently bypassing SNI-based HTTPS filtering // 2015 IFIP/IEEE International Symposium on Integrated Network Management (IM). — May 2015. — С. 990–995.
29. J. Sanders. Let's Encrypt initiative to provide free encryption certificates - November 25, 2014. [Электронный ресурс] https://www.techrepublic.com/article/lets-encrypt-initiative-to-provide-free-encryption-certificates/
30. letsencrypt/boulder License [Электронный ресурс] https://github.com/letsencrypt/boulder/blob/master/LICENSE.txt
31. letsencrypt/certbot License [Электронный ресурс] https://github.com/certbot/certbot/blob/master/LICENSE.txt (дата обращения 01.06.2018)
32. Working area for the Working Group internet-draft, Automatic Certificate Management Environment (ACME) [Электронный ресурс] https://github.com/ietf-wg-acme/acme/