Title: SSL (Secure Sockets Layer)
1SSL (Secure Sockets Layer)
http//project.cs.kku.ac.th/2546/seminar/g6/
???????? 6 ??????????? ????????? 433338-7 ???????
???????? 433353-7 ???????????????? ??.?????
????????
2????????????
- ??????????????????????????????
- ???????????????????????????????????????????? SSL
protocol
3Outline
- ????????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
4????????????? SSL
2.?????????????????????????
5Outline
- ???????????????
- ??????????
- ????????????? SSL
- ??????????? SSL
- SSL ???????
- ????????????? SSL
- ?????????????? SSL
- ????????????????
- ??????????????? SSL
6SSL ???????
- SSL ???????? Secure Sockets Layer ????
??????????????????????????????????????????????????
??????????? ??????????????????????????
7????????????? SSL
- ???????? SSL ?????????????????? Netscape
Communications ???????????????????????????????????
????????? SSL ????????????????????????????????????
????????????????????????? - ???????? SSL ??????????????????????????? 3
8Outline
- ????????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
9?????????????? SSL
- ?????????? SSL ????????????? 3 ????????? ???
- ?????????? server ??????????????
- ????????????? client ???????????
- ??????????????????????????
10Outline
- ???????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
11?????????????????
- ?????????????? ???? Cryptography ??????????? 2
?????? ???
1.???????????????????? ( Symmetric Key
Cryptography)
2.????????????????????? (Asymmetric Key
Cryptography)
121.?????????????????????????(Symmetric Key
Cryptography ???? Secret Key)
132.?????????????????????????? (Asymmetric Key
Cryptography ???? Public Key)
14Outline
- ???????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
15??????????????? SSL
- ?????????????????????????? application layer ???
transport layer
16(No Transcript)
17??????????????? SSL
- ?????????????????????????? application layer ???
transport layer - ????????????????? application ???????????? ? ???
18??????????????? SSL
- ????????????????????
- ???????????????????? (encryption)
- Message Digests
- ????????????????????? (digital signature)
19Outline
- ???????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
20?????????????????? SSL
21?????????????????? SSL
22?????????????????? SSL
23Outline
- ???????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
- ????????????????????? CA
- ???????????????????? SSL
24??????????????????????? Certificate Authority
251. ???? Internet Information Services ??????
262. Click ?????? Default Web Site ????????
properties ???????????????? Directory Security
273. ????? Server Certificate ??? Secure
Communications ????????????????????????????????
Click Next
284. ????? Create a new certificate. ??????? Click
Next
295. ????? Prepare the request now, but sent it
later ??????? Click Next
306.????????????? Web site ??????????????? key
??????? Click Next ???????????????????? ????
Click Next
317. ????? path ??????????? flie ???????????
request ???????? follow ?????? IIS Certificate
Wizard ???????
328. ??????????????????????????? ???????????????????
?????? ??????? Click Next ???????????
339. Click ??? Finish ???? Click Ok
3410. Certificate request ??????
3511. ??????????????????????? CA ???????????
?????????????????????????? http//registrar.kku.ac
.th/certsrv/
3612. ????? Retrieve the CA certificate or
revocation list ???? Click Next
3713. ????? Base 64 encoded ????????? download file
3814.????????????? http//registrar.kku.ac.th/certsr
v/ ????????? Request a certificate ???? Click Next
3915. ????? Advanced request ???? Click Next
4016. ????? Submit a certificate request using a
base64 encoded PKCS10 file or renewal request
using a base64 encode PKCS7 ??????? Click Next
4117.???????????? copy ???????? file ?????????(???
10) ??????? Save Request ??????? Click ??? Submit
4218. ??????????????????????? ??????????????????????
???????????????
4319.????????????????????????????????????????????
file ?? 2 file
4420. ????????? Install Certificate file ????
certnew.cer
45Outline
- ???????????? SSL
- ??????????? SSL
- ??????????? SSL
- ?????????????????
- ??????????????? SSL
- ?????????????????? SSL
- ??????????
- ????????????????????? CA
- ?????????????? Service SSL
46??????????????Service SSL
47 1. ???????? IIS ???? ????????? properties ???
Defualt Web Site
48 2. ????? Directory Security ????? Edit
49 3. Click ??? check box Require secure channel
(SSL) ???? Click OK
50????????????????? SSL
- SSL ?????????????????????????????????????????????
?????????????????? - Authorization ???? Confidentiality
- Authentication
- Integrity
51???????????? SSL
- ??????????????
- ????????????????????????????????????????????????
??????????????????????????????????????????? - ??????????????????? ????????????? ( Share
Information) - ?????????????????? ???????????????????????????????
??
52?????????????? SSL
- ?????????????????????????????
- ??????????????????????????????????????????????????
- ?????????????????????????????????
????????????????????????????????????????????????? - ??????????????????????????????????????????????????
53???????????
- ????????????????
- ??.????? ????????
- ??????????????
- ??????????? ???????
- ??????????????????????? ??????????????????
54??????????
http//thai-ecommerce.net/ssl.htm http//www.itsec
urity.com/papers/rainbow3.htm http//www.thailinux
.com/2000/11/19/topic4.html http//www.ristenbatt.
com/ssl.mv http//www.thaicert.nectec.or.th/paper/
basic/Secure_Shell.php http//thaicert.nectec.or.t
h/paper/unix_linux/ssh-tunneling.php1 http//thai
cert.nectec.or.th/paper/unix_linux/ssh-tunneling.p
hp1
55??????????
http//developer.netscape.com/tech/security/ssl/ho
witworks.html http//www.ecommerce.or.th/faqs/faq3
-1.html http//www.info.tdri.or.th/r4_ch1.htm http
//www.cpc.ku.ac.th/manual/ku-cert/ku-cert.htmlce
rt5 http//www.instantssl.com/ http//www.cs.bris.
ac.uk/bradley/publish/SSLP/cover.html
56??????????
http//msdn.microsoft.com/msdnmag/issues/01/04/SSL
/default.aspx http//www.bangkokbank.com/BangkokB
ankThai/PersonalBanking/InternetBanking/FAQ/Sec
urity.htm
57???????????