SSL 的安全性如何? [英] How secure is SSL?
问题描述
SSL(安全套接层)有多安全?例如,破解通过 SSL 发送的密码需要多少费用?
How secure is SSL (Secure Socket Layer)? As in, how much will it take to crack a password sent through SSL?
推荐答案
假设一切都已正确设置/保护并且我们正在讨论 128 位密钥,明显长于宇宙的年龄.
Assuming everything is setup/secured properly and we're talking about 128-bit keys, significantly longer than the age of the universe.
我注意到以前的 SSL 破解 依赖于MD5中的洞",导致一些验证方法发生变化..
I would note that previous cracks in SSL relied on "hole" in MD5, which caused some the method of validation to change..
我还要注意,这并不能让您免于man-in-中间人 攻击,甚至有人劫持了目标公司的私有证书(请注意,私有密钥应通过强 密码进行保护,以减轻这种风险,然后密钥被撤销如果发生此类事件).在此处阅读有关 SSL 工作原理的高级概述.
I would also note, this doesn't free you from man-in-the-middle attacks, or even someone hijacking the private cert of the target company (note that private keys should be protected via a strong password though to mitigate such a risk and then the key revoked if such an event occurs). Read a high level overview on how SSL works here.
这篇关于SSL 的安全性如何?的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!