Online Trust and Digital Certificates: Tech Tutorial Edward W. - - PowerPoint PPT Presentation

online trust and digital certificates tech tutorial
SMART_READER_LITE
LIVE PREVIEW

Online Trust and Digital Certificates: Tech Tutorial Edward W. - - PowerPoint PPT Presentation

Online Trust and Digital Certificates: Tech Tutorial Edward W. Felten Professor of Computer Science and Public Affairs Princeton University Secure connection means: 1.Protected channel to some server 2. Authentication of the servers


slide-1
SLIDE 1

Online Trust and Digital Certificates: Tech Tutorial

Edward W. Felten Professor of Computer Science and Public Affairs Princeton University

slide-2
SLIDE 2
slide-3
SLIDE 3
slide-4
SLIDE 4
slide-5
SLIDE 5

Secure connection means: 1.Protected channel to some server 2.Authentication of the server’s identity

slide-6
SLIDE 6

∀ 0 < x < pq: x(p-1)(q-1) mod pq = 1

slide-7
SLIDE 7
  • nline identity: distinctive but anonymous
slide-8
SLIDE 8
  • nline identity: distinctive but anonymous

like a fingerprint

slide-9
SLIDE 9

digital signature stamp document with your fingerprint

slide-10
SLIDE 10

digital signature stamp document with your fingerprint

slide-11
SLIDE 11

https://www.princeton.edu

slide-12
SLIDE 12

Whose fingerprint is that? https://www.princeton.edu

slide-13
SLIDE 13

princeton.edu’s fingerprint: Signed,

slide-14
SLIDE 14

princeton.edu’s fingerprint: Signed,

certificate (“cert”)

slide-15
SLIDE 15

https://www.princeton.edu princeton.edu’s fingerprint: Signed,

+

slide-16
SLIDE 16

Certificate Authority (“CA”)

slide-17
SLIDE 17

Certificate Authority (“CA”) issues / signs certificates

slide-18
SLIDE 18

Certificate Authority (“CA”) issues / signs certificates based on due diligence

slide-19
SLIDE 19
slide-20
SLIDE 20

Is that really the CA’s fingerprint?

slide-21
SLIDE 21

Is that really the CA’s fingerprint? Do I trust the CA?

slide-22
SLIDE 22
slide-23
SLIDE 23

Treat this fingerprint as if it were my own Signed,

slide-24
SLIDE 24
slide-25
SLIDE 25

“domain validation” cert “extended validation” cert

slide-26
SLIDE 26

“domain validation” cert “extended validation” cert green

slide-27
SLIDE 27

“domain validation” cert “extended validation” cert green true name