Understanding SSL Protocol and Its Cryptographic Weaknesses
Aditya Aayush, Yash Aryan, Balachandra Muniyal · 2022 3rd International Conference on Intelligent Engineering and Management (ICIEM) · 2022
SSL certificates (Secure Sockets Layer) have become a core part of website security. They ensure the websites can transfer data to the origin server securely and privately by enabling SSL/TLS encryption. These certificates encrypt all interactions using the website's public key and decode them using the certificate's private key, which is kept on the server that issued the certificate. In addition to encryption, these certificates also help verify website identity and ensure that the user communicates with the correct server. This paper briefly mentions client-server interaction based on HTTP protocol. It gives a detailed explanation of the design and implementation of the Secure Socket Layer protocol, followed by a discussion on the cryptographic vulnerabilities associated with SSL and possible ways to tackle them.