Get the latest tech news

Intuiting TLS


How do you speak privately in a public setting? Think about it.

So then the straight-forward approach is P re- S hared- K eys ( PSK) that both sides would either put directly into the AEAD (skipping Key Exchange), or use to randomize the Diffie-Hellman shared secret result. These “public key + website name” signatures can be called Certificates and they form a centralized trust system known as P ublic K ey I nfrastructure ( PKI). It’s a pretty hostile environment and TLS addresses this while also handling a bunch of edge cases I didn’t cover like forward secrecy and various data/timing attacks.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Intuiting TLS

Intuiting TLS