Michael Lucas: Transport Layer Security (TLS)

Опубликовано: 11 Май 2026
на канале: Michigan!/Usr/Group
689
37

Support this and our other Michigan!/usr/group videos and meetings. Learn more at http://mug.org/membership

Transport Layer Security (aka Secure Sockets Layer, TLS, and SSL) is among the most widely deployed and least understood networking protocols. It's a tiny but mighty part of most Internet applications, and must be deployed in ways that violate conventional sysadmin wisdom.

This talk takes you through:

How TLS works
What TLS provides, and what it doesn't
Assessing TLS configurations
The Automated Certificate Management Environment (ACME) protocol
Using Let's Encrypt to automatically maintain TLS certificates
Online Certificate Status Protocol
Certificate Revocation
CAA, HSTS, and Certificate Transparency
Why you shouldn't run your own CA, and how to do it anyway
Based on the new book "TLS Mastery."

Michael W. Lucas (MWL) is the author of over thirty books and has been using Unix since the late 1980s. Some of his popular titles include "Absolute FreeBSD 3rd ed.", "SSH Mastery, 2nd ed," "FreeBSD Mastery: ZFS," and the novel "git commit murder." MWL's writing may be found over at https://www.mwl.io