4 ms·
The packets are routed over the public Internet, but if you're using HTTPS, they'll look like encrypted garbage to anyone who doesn't have Google's SSL private
by jackowayed 14y ago
The packets are routed over the public Internet, but if you're using HTTPS, they'll look like encrypted garbage to anyone who doesn't have Google's SSL private key.
- unimpressive 14y agoThough once again in all fairness, the security of SSL is not a guarantee. (See: http://googleonlinesecurity.blogspot.com/2011/08/update-on-attempted-man-in-middle.html http://googleonlinesecurity.blogspot.com/2011/08/update-on-a...)
- ravivyas 14y agoThe DigiNotar case was an anomaly where the certificate provider was compromised. This is a rare case.
- unimpressive 14y agohttp://www.infoworld.com/t/authentication/weaknesses-in-ssl-certification-exposed-comodo-security-breach-593 http://www.infoworld.com/t/authentication/weaknesses-in-ssl-... Seems to happen often enough. (Then again, 2011 seems to have been something of an unlucky year for security professionals. Just ask RSA.)
- ravivyas 14y agoWell you got to trust someone... else you should just unplug your computer from the internet :)
- sneak 14y agoIt's nowhere near as rare as you think. There are sub-CA certs issued to private companies all the time, allowing them to MITM any default browser config. The PKI is now totally broken.
- deleted 14y ago[deleted]