HSTS - HTTP Strict Transport Security - Protect against SSL Stripping attack - Practical TLS

  Рет қаралды 37,598

Practical Networking

Practical Networking

Күн бұрын

Пікірлер: 58
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
👉 *More free lessons:* kzbin.info/aero/PLIFyRwBY_4bTwRX__Zn4-letrtpSj1mzY ✨ *Full course:* pracnet.net/tls 💲 *Coupon Code* for 50% off: youtube50
@scottspa74
@scottspa74 2 жыл бұрын
I just sent this to my computer info systems and digital forensics current instructors to point out to them how much they're failing us. You, Ed, are doing the greatest work, you're a hero
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Ha. Thank you Scott. I appreciate the shares =). Hope they sign up for my course!
@Jamesaepp
@Jamesaepp 2 жыл бұрын
Followed this from reddit, binged the whole playlist. Just wanted to comment that this is incredibly well done. * I love the fading pen marks. I imagine this is great for learners for whom English is not a primary language, and it's great for when I'm reviewing/filling in small gaps while watching at 2x. :) * THANK YOU for including a couple episodes with actual math. You explained this more concisely and with better examples/context than the computerphile videos. I'll be recommending your series to anyone I know in the future who wants to better understand digital cryptography.
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Hi James. Thank you for the kind words. I'm really happy you enjoyed this content as much as you did =). Yes, I love the math! Not math itself, granted, but the simpler Crypto examples really helped it click for me when I first learned all this, so I was eager to do the same to others watching the video. Do me a favor... if you're willing, do you mind posting a link or two to some of the other videos on Reddit? Self promotion is always looked at with suspicion, but a fellow Sysadmin referring good content is typically well received. No pressure either way. Thanks again for the kind words =).
@Larry-nx8ho
@Larry-nx8ho 2 жыл бұрын
I've seen this make many wifi guest portals not be able to redirect, too. Great video, as always!
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Absolutely! Glad you enjoyed it =)
@wildmanjeff42
@wildmanjeff42 2 жыл бұрын
Thanks for the video, very informative and easy to understand
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome. Glad you enjoyed it, Jeff.
@etpienaar
@etpienaar 2 ай бұрын
really well thought out and explained :)
@kotemanoble1734
@kotemanoble1734 2 жыл бұрын
Interesting, thanks for putting this out there.
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome, Kaizen!
@navinreddy-xx1vo
@navinreddy-xx1vo 8 ай бұрын
no words, awesome videos, Thanks for video
@PracticalNetworking
@PracticalNetworking 8 ай бұрын
You're very welcome!
@thriveniraghav4356
@thriveniraghav4356 2 жыл бұрын
All your videos are very informative. Thank you. Can you make videos on SD-WAN technology.
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome, Thriveni. SD-WAN isn't in my expertise to teach on, I'm afraid.
@DonatoProce
@DonatoProce 2 жыл бұрын
excellent description - thanks!!
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome !
@1Esteband
@1Esteband 8 ай бұрын
Excellent presentation. Thank you!
@jeremiahm5487
@jeremiahm5487 2 жыл бұрын
Been a while since we heard from you. Fantastic video BTW.
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Glad you enjoyed it, Jeremiah. =)
@sushilshiwaniwal
@sushilshiwaniwal 5 ай бұрын
Thanks for the shared information.
@shahdharmik1919
@shahdharmik1919 Жыл бұрын
In this case of using HSTS, use of following is still vulnerable? 1. Browser extensions interception just like M-I-M attack? The manually installed ones! 2. Use of any non-standard browsers, i.e tor, lunaspace, uc browser, brave? Just curious to knw
@Alex-hn3lc
@Alex-hn3lc 11 ай бұрын
Very well explained thank you.🙏
@sonyphilipp3345
@sonyphilipp3345 2 жыл бұрын
Brilliant work
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Thank you again, Sony =)
@DebasishMandal
@DebasishMandal 22 күн бұрын
great video; thansk!
@michawojcik1519
@michawojcik1519 2 жыл бұрын
Very informative mate, thanks a lot
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome, Michal. Cheers!
@youssefblt9839
@youssefblt9839 9 ай бұрын
thanks verry infomative
@waverache8296
@waverache8296 2 жыл бұрын
Nice explanation
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Thank you, Waver =)
@Alexanderslaxis
@Alexanderslaxis 2 жыл бұрын
Hey man, your tutorials are brilliant. Can you please create a new series to discuss optical networks and their components?(SONET/SDH, TDM,WDM,ROADM,RAMAN,WSS, G.709 OTN, FEC, OTN Alarms, OTN TCM, TTI, etc).
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Hi Alexander, glad you're enjoying these. You listed a lot =). That is a big ask. ^_^ Regrettably, none of the acronyms seem to be within my expertise to teach =/
@subee128
@subee128 2 ай бұрын
Thanks
@AliRem
@AliRem 2 жыл бұрын
Perfect !
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
@AshishMishra-kw2zm
@AshishMishra-kw2zm 2 жыл бұрын
Wow ... Amazing Video ❤️❤️ ... Need session on SDN as well... VMware NSX-T please 🙏🙏
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
Glad you enjoyed it =). There are so many videos on my list to make. SDN is going to be a ways back. VMware probably isn't on the list, I'm afraid =(
@abdirahmanabdullahi1150
@abdirahmanabdullahi1150 2 жыл бұрын
Ed thank you 😊
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome, Abdirahman!
@munirajulu
@munirajulu 2 жыл бұрын
Thanks Sir 🙏
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
You're welcome!
@ayyapanr
@ayyapanr Жыл бұрын
Hey Ed.. great explanation on ssl stripping. However I am wondering what happens if the MITM strips the HSTS headers on the response traffic in the scenario of Server MITM Client.
@rezamirzazadefarkhani6915
@rezamirzazadefarkhani6915 9 ай бұрын
Great question. Preloading is supposed to partially address this issue by making the very first request in HTTPS. However, Preloading does not scale up to the whole internet. Therefore, if the website is not in the Preloading list and if the attacker can strip the HSTS headers by MITM, then the attack scenario you mentioned is possible.
@govindraj1092
@govindraj1092 2 жыл бұрын
Hello Master could you share me STP protocol & FHRP.. Details please
@PracticalNetworking
@PracticalNetworking 2 жыл бұрын
I hope to make some STP videos at some point, yes. While not explicitly about FHRP, I wrote an article on Gratuitous ARP that touches on how HSRP works, slightly. If you're interested: www.practicalnetworking.net/series/arp/gratuitous-arp
@pavankumarkj255
@pavankumarkj255 2 жыл бұрын
STP is explained by Keith barker here on YT. Definitely check that out. And always banger video form PN.
@nosajix
@nosajix 7 ай бұрын
What about self signed warnings?
@chadsexinton
@chadsexinton Жыл бұрын
What specifically on the browser does it use to remember that 63M seconds ?
@HubertHeller
@HubertHeller Жыл бұрын
Aside from security, how much will it make my website faster?
@PracticalNetworking
@PracticalNetworking Жыл бұрын
The speed gain is negligible. It could save you a round trip, in certain cases, but the main benefit of implementing HSTS should be security, not speed (that's a side perk).
@HubertHeller
@HubertHeller Жыл бұрын
@@PracticalNetworking what about HS TS preload? Any speed advantage there?
@PracticalNetworking
@PracticalNetworking Жыл бұрын
@@HubertHeller Again, there would be a slight advantage (in some cases) ... but speed shouldn't be the main driver of implementing HSTS =). For instance, if the user already initiated a session to the https version of the site.. there would be no visible affect to speed whether you implement HSTS and/or preload
@fekkon_rasulegando
@fekkon_rasulegando 2 ай бұрын
❤❤❤
@kornelijekovac9793
@kornelijekovac9793 3 ай бұрын
Why all this? Can't they just enforce SSL connection at browser level for all websites?
@casper64
@casper64 2 ай бұрын
The point is not to protect users but protect your self with encryption. If you use HSTS you can enforce encryption yourself instead of having to rely on the client
@BrendaSnead-z7d
@BrendaSnead-z7d 18 күн бұрын
Enoch Field
TLS Handshake - EVERYTHING that happens when you visit an HTTPS website
27:59
Practical Networking
Рет қаралды 120 М.
How SSL & TLS use Cryptographic tools to secure your data - Practical TLS
7:58
HAH Chaos in the Bathroom 🚽✨ Smart Tools for the Throne 😜
00:49
123 GO! Kevin
Рет қаралды 14 МЛН
From Small To Giant Pop Corn #katebrush #funny #shorts
00:17
Kate Brush
Рет қаралды 69 МЛН
HTTPS, SSL, TLS & Certificate Authority Explained
43:29
Laith Academy
Рет қаралды 112 М.
How Data moves through the Internet - Networking Fundamentals
26:47
Practical Networking
Рет қаралды 355 М.
Anti-Replay and Non-Repudiation - Practical TLS
5:09
Practical Networking
Рет қаралды 41 М.
SSL, TLS, HTTP, HTTPS Explained
6:31
PowerCert Animated Videos
Рет қаралды 2,5 МЛН
What is SSL & TLS ?   What is HTTPS ?   What is an SSL VPN? - Practical TLS
7:34
Practical Networking
Рет қаралды 151 М.
SSL, TLS, HTTPS Explained
5:54
ByteByteGo
Рет қаралды 765 М.