正在加载视频...

视频加载失败

HTTPS clearly explained in 7 minutes

57,561 次观看 • 1 个月前 •via X (Twitter)

5 条评论

Petar Ivanov 的头像
Petar Ivanov1 个月前

Note: "client encrypts a session key with the server's public key" step is the exact part TLS 1.3 removed. It's called RSA key transport, and it got dropped for ephemeral Diffie-Hellman (ECDHE). The reason is forward secrecy. Under RSA, an attacker records your encrypted traffic today, steals the server's private key a year later, and decrypts all of it retroactively. Ephemeral DH uses a throwaway key pair per session, so a stolen key reveals nothing about past traffic. The private key still signs the handshake to prove identity. It just no longer unlocks the conversation.

TechP 的头像
TechP1 个月前

Detailed explanation

VAI 的头像
VAI1 个月前

Extremely helpful visualizer & explaining. Thanks, Alex!

veve 的头像
veve1 个月前

7 menit doang cukup jelas?

Shiv 的头像
Shiv1 个月前

learned a lot from bytebytego

相关视频