Lecture 19 Outline
Reading: §12.3, 12.4.2, 26
Due: Lab 3, due on May 23, 2018 at 11:59pm; Homework 4, due on May 25
- Networks and ciphers
- Where to put the encryption
- Link vs. end-to-end
- TLS and SSL
- Session, connection
- Cryptographic mechanisms
- Lower layer: TLS record protocol
- Upper layer
- TLS handshake protocol
- TLS change cipher spec protocol
- TLS alert protocol
- TS heartbeat extension
- TLS application protocol
- TLS vs. SSLv3
- Firewalls
- Why use them?
- Packet-level or filtering firewalls
- Application layer or proxy firewalls
- Network organization
- Inside/outside
- Inside/DMZ/outside
- How email and web services (and others) are handled
- Denial of service attacks
- SYN cookies
- Adaptive time-out
- Domain Name Service
- Weak authentication
- Reverse name lookup
- Attacks
- DNSSEC