Enterprise Linux Security Episode 22 - Certificates

preview_player
Показать описание
Encryption is a great benefit to take advantage of, especially when it comes to hosting web sites. But how exactly do TLS certificates work? In this episode, Jay and Joao discuss foundational concepts surrounding certificates, as well as some advice and recommended practices.

*💬 CHECK OUT OUR FORUMS*
Have a Linux question? Want to share a tip? Or maybe just hang out?

*👕 GRAB SOME LINUX SWAG!*

*🐧 SUPPORT LINUX LEARNING!*
_Note: Royalties and/or commission is earned from each of the above links_*🎓 FULL LINUX COURSES FROM LEARN LINUX TV*

*🌐 LEARN LINUX TV ON THE WEB*

*⚠️ DISCLAIMER*
Learn Linux TV provides technical content that will hopefully be helpful to you and teach you something new. However, this content is provided without any warranty (expressed or implied). Learn Linux TV is not responsible for any damages that may arise from any use of this content. Always make sure you have written permission before working with any infrastructure and that you are compliant with all company rules, change control procedures, and local laws.

#Linux #LinuxPodcast #Certificates
Рекомендации по теме
Комментарии
Автор

This helped so much for my current role. Thank you tons Jay and Joao. Also, Jay, is that an OCREMIX sticker on your laptop?

ReonBalisty
Автор

I currently have about 270 certificates that I have to renew every year, that's a certificate renewal every other day. Symbolic links are essential to somewhat standardize the renewing process. Just copy over the cert, update the symlink, restart the service and BAM see ya next year (hopefully).

louiskar
Автор

What does "simple, good" look like for pushing out certs? Can it be ansible-ised?

MichaelSmith-fgxh
Автор

Oh I clicked this thinking it was going to be about Linux Certifications like LPIC lol.

zerotheory
Автор

Incorrect information saying "wildcards are rarely issued these days"
Please know that TLS ("SSL") Certificates are cheap from CAs if you go through the right channels.
Many CAs will issue a wildcard for a domain for under $100/yr (but never the Extended Validation "Green Bar")
Let's Encrypt at the time of writing even offers wildcards for "free" provided you take the time to set it up.
What you are paying for is the retail channel. CAs know most customers securing 1 domain will probably need assistance installing and that takes time.
When you DIY the install and buy without support, things are much cheaper

RyanLelek
Автор

Usually great videos on Linux, this however was waste of time.

harveyellis