PKI: The Infrastructure That Everyone Needs and Nobody Wants to Think About
There are technologies that get all the attention.
Read article: PKI: The Infrastructure That Everyone Needs and Nobody Wants to Think About14 articles tagged PKI.
There are technologies that get all the attention.
Read article: PKI: The Infrastructure That Everyone Needs and Nobody Wants to Think AboutThere is a category of enterprise terminology that exists primarily to make consultants argue with each other.
Read article: Asset Management vs. Configuration Management: Yes, They Are Different ThingsThere is a special kind of fun involved in looking at an X.509 certificate with OpenSSL.
Read article: X.509v3 Extensions: Taking Apart a Certificate ChainPost-Quantum Cryptography (PQC) is creating a rather awkward problem for PKI.
Read article: X.509 Certificates With More Than One Signature: Because You Can Never Have Too Many Cryptographic…I once worked with an architect who had a fascinating theory about software development.
Read article: The Software Architect Who Believed in Bug-Free SoftwareLet’s get something out of the way upfront.
Read article: Enterprise Asset Management: The Most Boring Thing You Absolutely NeedThere is a wonderful phrase that gets tossed around in corporate IT meetings.
Read article: Risk Management: Or How Corporate IT Learned to Fear Everything Except the Things That Actually…This tutorial describes how to convert a Binary Security Token extracted from a SOAP message into a valid PEM format that can be read by openssl or similar tool. If you are ever troubleshooting the use of X509v3 certificates used with WS-Security, this can come in very handy.
Read article: Convert an X509v3 Binary Security Token to PEM FormatThe XML DSig specification is used to provide digital signature functionality to XML Documents. It is is used by numerous other specs such as WS-Security and SAML2. This blog entry will describe how digital signatures work with an X509 private/public key pair.
Read article: XML Digital SignaturesThis is an old picture that I made for a 2010 JBoss World security presentation. It came in handy not so long ago when I was explaining the SSL Handshake to someone.
Read article: SSL Handshake—The Visual