Network Security: Private Communication in a Public World, 2/e (Hardcover)

Charlie Kaufman, Radia Perlman, Mike Speciner

買這商品的人也買了...

商品描述

Summary

The classic guide to network security—now fully updated!"Bob and Alice are back!"

Widely regarded as the most comprehensive yet comprehensible guide to network security, the first edition of Network Security received critical acclaim for its lucid and witty explanations of the inner workings of network security protocols. In the second edition, this most distinguished of author teams draws on hard-won experience to explain the latest developments in this field that has become so critical to our global network-dependent society.

Network Security, Second Edition brings together clear, insightful, and clever explanations of every key facet of information security, from the basics to advanced cryptography and authentication, secure Web and email services, and emerging security standards. Coverage includes:

  • All-new discussions of the Advanced Encryption Standard (AES), IPsec, SSL, and Web security
  • Cryptography: In-depth, exceptionally clear introductions to secret and public keys, hashes, message digests, and other crucial concepts
  • Authentication: Proving identity across networks, common attacks against authentication systems, authenticating people, and avoiding the pitfalls of authentication handshakes
  • Core Internet security standards: Kerberos 4/5, IPsec, SSL, PKIX, and X.509
  • Email security: Key elements of a secure email system-plus detailed coverage of PEM, S/MIME, and PGP
  • Web security: Security issues associated with URLs, HTTP, HTML, and cookies
  • Security implementations in diverse platforms, including Windows, NetWare, and Lotus Notes

Table of Contents

Acknowledgments.
1. Introduction.

I. CRYPTOGRAPHY.


2. Introduction to Cryptography.
3. Secret Key Cryptography.
4. Modes of Operation.
5. Hashes and Message Digests.
6. Public Key Algorithms.
7. Number Theory.
8. Math with AES and Elliptic Curves.

II. AUTHENTICATION.


9. Overview of Authentication Systems.
10. Authentication of People.
11. Security Handshake Pitfalls.
12. Strong Password Protocols.

III. STANDARDS.


13. Kerberos V4.
14. Kerberos V5.
15. PKI (Public Key Infrastructure).
16. Real-time Communication Security.
17. IPsec: AH and ESP.
18. IPsec: IKE.
19. SSL/TLS.

IV. ELECTRONIC MAIL.


20. Electronic Mail Security.
21. PEM & S/MIME.
22. PGP (Pretty Good Privacy).

V. LEFTOVERS.


23. Firewalls.
24. More Security Systems.
25. Web Issues.
26. Folklore.
Bibliography.
Glossary.
Index.

商品描述(中文翻譯)

摘要

網絡安全的經典指南-現已全面更新!'Bob和Alice回來了!'

《網絡安全》被廣泛認為是最全面且易於理解的網絡安全指南,第一版因其對網絡安全協議內部運作的清晰而風趣的解釋而受到好評。在第二版中,這個最傑出的作者團隊借助他們的寶貴經驗,解釋了這個對我們全球依賴網絡的社會至關重要的領域的最新發展。

《網絡安全第二版》匯集了對信息安全的每個關鍵方面的清晰、深入和巧妙的解釋,從基礎知識到高級加密和身份驗證、安全的網絡和電子郵件服務,以及新興的安全標準。內容包括:

- 全新討論高級加密標準(AES)、IPsec、SSL和Web安全
- 加密學:對秘密和公開密鑰、哈希、消息摘要和其他關鍵概念的深入、非常清晰的介紹
- 身份驗證:在網絡上證明身份、對身份驗證系統的常見攻擊、對人的身份驗證以及避免身份驗證握手的陷阱
- 核心互聯網安全標準:Kerberos 4/5、IPsec、SSL、PKIX和X.509
- 電子郵件安全:安全電子郵件系統的關鍵要素,以及對PEM、S/MIME和PGP的詳細介紹
- Web安全:與URL、HTTP、HTML和cookies相關的安全問題
- 在不同平台上的安全實現,包括Windows、NetWare和Lotus Notes

目錄

致謝
1. 簡介

I. 加密學

2. 加密學簡介
3. 對稱密鑰加密
4. 運作模式
5. 哈希和消息摘要
6. 公開密鑰算法
7. 數論
8. AES和橢圓曲線的數學

II. 身份驗證

9. 身份驗證系統概述
10. 人的身份驗證
11. 安全握手的陷阱
12. 強密碼協議

III. 標準

13. Kerberos V4
14. Kerberos V5
15. PKI(公鑰基礎設施)
16. 實時通信安全
17. IPsec:AH和ESP
18. IPsec:IKE
19. SSL/TLS

IV. 電子郵件

20. 電子郵件安全
21. PEM和S/MIME
22. PGP(Pretty Good Privacy)

V. 其他

23. 防火牆
24. 更多安全系統
25. Web問題
26. 傳說
參考文獻
詞彙表
索引