This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "SSL TLS Knowledge Center"

From OWASP
Jump to: navigation, search
(Resources)
(Needed)
Line 15: Line 15:
  
 
References to current SSL/TLS RFC specs
 
References to current SSL/TLS RFC specs
 +
 +
Eventually we'll need some sort of organization or grouping. We'll address that as it grows and a system makes sense.
  
 
More entries to the "Needed" list
 
More entries to the "Needed" list
  
 
Anything else that would be helpful related to SSL/TLS
 
Anything else that would be helpful related to SSL/TLS

Revision as of 18:16, 6 January 2010

Purpose

The SSL/TLS Knowledge Center serves as a central point to provide references to SSL/TLS.

Resources

Transport_Layer_Protection_Cheat_Sheet - OWASP SSL/TLS Cheat Sheet

Strict Transport Security Spec - Specification for STS which allows a website to instruct the browser to not send requests to the web server over non-TLS channels.

STS in No Script - [BlogPost] How to enable STS support within No Script plugin

HTTPS Data Exposure - [BlogPost] HTTPS data exposure comparison for GET and POST

Needed

Guides for configuring SSL/TLS cipher support in common web servers

References to current SSL/TLS RFC specs

Eventually we'll need some sort of organization or grouping. We'll address that as it grows and a system makes sense.

More entries to the "Needed" list

Anything else that would be helpful related to SSL/TLS