🌱 Enrico's Digital Garden

flashcards/software-engineering/tls

10 items with this tag.

  • Aug 29, 2026

    A certificate authenticates a Diffie-Hellman exchange by signing the handshake transcript

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    An AEAD nonce must be unique, not secret — reuse under one key is catastrophic

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    An AEAD record nonce is the static IV XOR the record sequence number

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    HKDF has two operations, Extract whitens messy entropy and Expand clones one key into many

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    TLS 1.3 0-RTT trades forward secrecy and replay protection for a saved round trip

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    TLS 1.3 chains three HKDF-Extract calls to fold in secrets that arrive at different times

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    TLS KeyUpdate is a one-way HKDF-Expand ratchet giving forward secrecy within a connection

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    TLS provides confidentiality, integrity and authentication over a reliable stream

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    TLS uses asymmetric crypto to bootstrap a shared key, then symmetric crypto for bulk data

    • atomic
    • flashcards/software-engineering/tls
  • Aug 29, 2026

    Transcript-binding welds derived keys to the exact handshake, detecting tampering and downgrade

    • atomic
    • flashcards/software-engineering/tls

Created with Quartz v5.0.0 © 2026

  • GitHub
  • Discord Community