首页> 外文会议>Congreso Internacional de Innovacion y Tendencias en Ingenieria >Services cloud under HSTS, Strengths and weakness before an attack of man in the middle MITM
【24h】

Services cloud under HSTS, Strengths and weakness before an attack of man in the middle MITM

机译:在中间队列中的男人袭击之前,服务云在HSTS,优势和弱势之下

获取原文

摘要

Web transactions have become one of the services most used today, the ease of interacting with different tools and the ubiquity of hand with new technologies has led to a significant increase in the development of solutions in the cloud; Today operations and services are done online and digital content is created under Web 4.0 giving many possibilities for developers, and new security problems. Security architecture models are a priority condition in any cloud solution, its costs, time and operation must be met and adapted as best as possible in the search to minimize the vulnerabilities in transmitting information under the client / server model that strengthen Local or remote connections of services or transactions over the internet. This article reviews the behavior of the HSTS standard as a complement to the security of the SSL / TLS protocol on the WEB service and specifically to the attack of man in the MITM environment, finding some strengths and weaknesses of the most popular browsers such as Internet Explorer, Google Chrome and Mozilla Firefox. The HSTS standard highlights its functionality because it keeps the HTTPS session on the main site and the subdomains associated with the website; Therefore, the complement is quite stable without any external intervention, increasing security conditions in confidentiality, authenticity and integrity pillars of all communication between applications. It delivers a vision of the very flexible and extensible standard to the rapid evolution and deployment of cloud technology solutions that provide migration to increasingly sophisticated and secure services demanded by organizations.
机译:Web交易已成为今天最多使用的服务之一,与不同工具的易于互动和新技术的手中的​​互相存在,导致云中解决方案的开发显着增加;今天的运营和服务在线完成,并在Web 4.0下创建数字内容,为开发人员提供许多可能性以及新的安全问题。安全架构模型是任何云解决方案中的优先级条件,其成本,时间和操作必须尽可能地满足并在搜索中尽可能地调整,以最大限度地减少加强本地或远程连接的客户端/服务器模型下传输信息中的漏洞互联网的服务或交易。本文审查了HSTS标准的行为作为对Web服务的SSL / TLS协议的安全性的补充,并专门针对MITM环境中的人攻击,找到了互联网等最受欢迎的浏览器的一些优势和缺点探险家,谷歌浏览器和Mozilla Firefox。 HSTS标准突出显示其功能,因为它会使主站点上的HTTPS会话和与网站相关联的子域;因此,在没有任何外部干预的情况下,补充非常稳定,在应用程序之间的所有沟通的机密性,真实性和完整性支柱中增加安全条件。它为云技术解决方案的快速演变和部署提供了非常灵活和可扩展标准的愿景,这些解决方案提供了迁移到组织所需的越来越复杂和安全的服务。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号