From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
Certificate stapling
From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep
Certificate stapling
- [Narrator] The primary issue with OCSP is that it places a significant burden on the OCSP servers operated by certificate authorities. These servers must process requests from every single visitor to a website or other user of a digital certificate, verifying that the certificate is valid and hasn't been revoked. Certificate stapling is an extension to the online certificate status protocol that relieves some of the burden placed upon certificate authorities by the original protocol. Let's look at how certificate stapling works for a web server. When a user visits a website and initiates a secure connection, the website sends its certificate to the user's browser, which is then normally responsible for contacting an OCSP server to verify the certificate's validity. With certificates stapling, the web server contacts the OCSP server itself and receives a signed and times-tamped response from the OCSP server, which the web…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
- (Locked) Trust models2m 49s
- (Locked) PKI and digital certificates4m 1s
- (Locked) Hash functions7m 28s
- (Locked) Digital signatures3m 50s
- (Locked) Create a digital certificate4m 53s
- (Locked) Revoke a digital certificate1m 41s
- (Locked) Certificate stapling2m 27s
- (Locked) Certificate authorities6m 22s
- (Locked) Certificate subjects3m 33s
- (Locked) Certificate types2m 54s
- (Locked) Certificate formats1m 29s
- (Locked)
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-