Secure Sockets Layer
Home > Security Definitions - Secure Sockets Layer
SearchSecurity.com Definitions (Powered by WhatIs.com)
EMAIL THIS
LOOK UP TECH TERMS Powered by: WhatIs.com
Search listings for thousands of IT terms:
Browse tech terms alphabetically:
A B C D E F G H I J K L M N O P Q R S T U V W X Y Z #

Secure Sockets Layer



Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

DEFINITION - The Secure Sockets Layer (SSL) is a commonly-used protocol for managing the security of a message transmission on the Internet. SSL has recently been succeeded by Transport Layer Security (TLS), which is based on SSL. SSL uses a program layer located between the Internet's Hypertext Transfer Protocol (HTTP) and Transport Control Protocol (TCP) layers. SSL is included as part of both the Microsoft and Netscape browsers and most Web server products. Developed by Netscape, SSL also gained the support of Microsoft and other Internet client/server developers as well and became the de facto standard until evolving into Transport Layer Security. The "sockets" part of the term refers to the sockets method of passing data back and forth between a client and a server program in a network or between program layers in the same computer. SSL uses the public-and-private key encryption system from RSA, which also includes the use of a digital certificate.

TLS and SSL are an integral part of most Web browsers (clients) and Web servers. If a Web site is on a server that supports SSL, SSL can be enabled and specific Web pages can be identified as requiring SSL access. Any Web server can be enabled by using Netscape's SSLRef program library which can be downloaded for noncommercial use or licensed for commercial use.

TLS and SSL are not interoperable. However, a message sent with TLS can be handled by a client that handles SSL but not TLS.

Getting started with secure sockets layers
To explore how the secure sockets layer is used in the enterprise, here are some additional resources:
Pros and cons of tunnelless VPN: Thinking about implementing a tunnelless VPN? Learn how to do it and the security risks associated with the technology.
SSL security risks and limitations: Learn about the limitations, lack of authentication standards and overall security risks associated with SSL in this excerpt from Dan Sullivan's book, A Shortcut Guide to Extended Validation SSL Certificates.

CONTRIBUTORS: Brendan Cusack
LAST UPDATED: 05 Oct 2008

Read more about Secure Sockets Layer:
- Netscape provides the SSL 3.0 Specification.
- Netscape describes SSL as one of several security technologies that it supports.
- Verisign , the leading digital certificate authority, provides over 125,000 Web sites with SSL server certificates, mainly for use in e-commerce.
- Go to SearchSecurity.com for security-specific information on SSL


Do you have something to add to this definition? Let us know.
Send your comments to techterms@whatis.com


BROWSE BY TAG
Network Protocols and Security,   Enterprise Network Security,   SSL and TLS VPN Security,   Secure VPN Setup and Configuration,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Kaminsky interview: DNSSEC addresses cross-organizational trust and security
A year since his serious DNS cache poisoning bug was made public, security researcher Dan Kaminsky advocates for widespread DNSSEC deployments.
PCI compliance requirement 4: Encrypt transmissions
Diana Kelley and Ed Moyle of Security Curve review PCI compliance requirement 4: "Encrypt transmission of cardholder data across open, public...
Balancing security and performance: Protecting layer 7 on the network
This video will explain options for securing application-layer traffic using network security technologies, architectures and processes, including...

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
5 terms you need to know before you employ VoIP  (SearchSecurity.com)
digest authentication  (SearchSecurity.com)
Digest authentication is a method of authentication in which a request from a potential user is received by a network server and then sent to a domain...




Get More Secure Sockets Layer Answers
Find Targeted Secure Sockets Layer Answers for Channel Professionals
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts