Every time something positive is published about SSL and encryption,such as Google’s recent decision making use of https encryption a favorable rating factor for a website, or n…
Short answer: Government CAs can still be considered “trusted third parties,” provided that they follow the rules applicable to commercial CAs. Introduction On July 8 Google ann…
A deadline set by the CA/Browser Forum for the use of Internal Names is quickly approaching, and many system administrators need to understand how best to adapt to this change. …
With the announcement of the Heartbleed bug and the resulting need to revoke large numbers of SSL certificates, the topic of certificate revocation has, once again, come to the …
Elliptic Curve Cryptography (ECC) has existed since the mid 1980s, but it is still looked on as the newcomer in the world of SSL, and has only begun to gain adoption in the past…
The recent Heartbleed issue has reawakened interest in SSL certificate revocation (see Adam Langley’s [blog][1], Larry Seltzer’s articles [here][2] and [here][3], and Steve Gibs…
The Heartbleed bug spurred server administrators worldwide to work closely with Certification Authorities (CAs) in rekeying and reissuing potentially vulnerable SSL certificates…
Recent revelations from Edward Snowden about pervasive government surveillance have led to many questions about the safety of communications using the SSL/TLS protocol. Such com…
On April 7, 2014, a vulnerability in the OpenSSL cryptographic library was announced to the Internet community. Aptly labeled as the Heartbleed bug, this vulnerability affects O…
Last year, Edward Snowden, an American computer specialist working as a contractor for the National Security Agency (“NSA”), shocked web users around the world by publicizing do…

