Quantum computing is advancing, and while experts are not sure when there will be a quantum computer powerful enough to break the RSA and ECC cryptographic algorithms that are currently in use, many are operating under the assumption tha…
PKI Consortium blog
Posts by tag IETF
As the legendary coach of the NY Yankees Yogi Berra allegedly said, “It’s difficult to make predictions, especially about the future.” But we’re going to try. Here are the CA Se…
Last month saw the final adoption, after 4 years of work, of TLS version 1.3 by the Internet Engineering Task Force (IETF). This latest iteration of the protocol for secure comm…
[Google just announced][1] they will not be enforcing certificate transparency (CT) logging for all new TLS certificates until April 2018. In a previous [blog post][2], we advis…
The policy change goes into effect October 2017 A recent Google announcement stated that all publicly trusted SSL/TLS certificates issued in October 2017 or later will be expect…
A team of researchers has announced a vulnerability with [SSL 2.0][1] called D ecrypting R SA with O bsolete and W eakened e N cryption; otherwise known as [DROWN][2]. SSL 2.0 i…
Looking Back at 2015 A number of new tactics proved 2015 was no exception to an active year defending against ever increasing security issues. Vendors found new and creative way…
Last week I attended and presented at the National Institute of Standards and Technology (NIST) [Workshop on Elliptic Curve Cryptography Standards][1]. In NIST’s words, “The wor…
Since we last [wrote about SSL/TLS performance][1], there has been a lot of activity in the IETF HTTP Working Group, resulting in the February announcement that the next version…
All the major browsers provide “security user interface”, meaning visual elements to inform the user of the security of their connection to the web page they’re visiting. Up unt…

