Cryptography & Security: Unterschied zwischen den Versionen

Aus Wiki - Jochen Hammann
Zur Navigation springen Zur Suche springen
Zeile 11: Zeile 11:
* [https://developers.google.com/identity/protocols/OAuth2 Using OAuth 2.0 to Access Google APIs]
* [https://developers.google.com/identity/protocols/OAuth2 Using OAuth 2.0 to Access Google APIs]


<br/>


= OpenID Connect =
= OpenID Connect =
Zeile 24: Zeile 25:
* [http://openid.net/specs/openid-connect-backchannel-1_0.html OpenID Connect Back-Channel Logout 1.0 - draft 03]
* [http://openid.net/specs/openid-connect-backchannel-1_0.html OpenID Connect Back-Channel Logout 1.0 - draft 03]


<br/>


= Fast Identity Online (FIDO) =
= Fast Identity Online (FIDO) =
Zeile 29: Zeile 31:
* [https://fidoalliance.org/specifications/download/ Universal Authentication Framework (UAF) / U2F (Universal Second Factor) Specifications]
* [https://fidoalliance.org/specifications/download/ Universal Authentication Framework (UAF) / U2F (Universal Second Factor) Specifications]


<br/>


= Security Assertion Markup Language 2.0 (SAML 2.0) =
= Security Assertion Markup Language 2.0 (SAML 2.0) =
Zeile 38: Zeile 41:
* [http://www.oasis-open.org/committees/download.php/56785/sstc-saml-metadata-errata-2.0-wd-05.pdf Metadata Specification]
* [http://www.oasis-open.org/committees/download.php/56785/sstc-saml-metadata-errata-2.0-wd-05.pdf Metadata Specification]


<br/>


= JSON Web Token et. al. =
= JSON Web Token et. al. =
Zeile 47: Zeile 51:
* [https://tools.ietf.org/html/rfc7519 RFC 7519: JSON Web Token (JWT)]
* [https://tools.ietf.org/html/rfc7519 RFC 7519: JSON Web Token (JWT)]


<br/>


= One Time Passwords =
= One Time Passwords =
Zeile 55: Zeile 60:
* [https://tools.ietf.org/html/rfc6560 RFC 6560: One-Time Password (OTP) Pre-Authentication]
* [https://tools.ietf.org/html/rfc6560 RFC 6560: One-Time Password (OTP) Pre-Authentication]


<br/>


= Einweg-Hashfunktionen =
= Einweg-Hashfunktionen =
Zeile 64: Zeile 70:
* [http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf FIPS PUB 180-4: Secure Hash Standard (SHS)]
* [http://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.180-4.pdf FIPS PUB 180-4: Secure Hash Standard (SHS)]


<br/>


= Authentifizierung =
= Authentifizierung =
Zeile 71: Zeile 78:
* [https://tools.ietf.org/html/rfc4121 RFC 4120: The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2]
* [https://tools.ietf.org/html/rfc4121 RFC 4120: The Kerberos Version 5 Generic Security Service Application Program Interface (GSS-API) Mechanism: Version 2]


<br/>


= Challenge Response =
= Challenge Response =


* [https://tools.ietf.org/html/rfc5802 RFC 5802: Salted Challenge Response Authentication Mechanism (SCRAM) SASL and GSS-API Mechanisms (Updated by RFC 7677)]
* [https://tools.ietf.org/html/rfc5802 RFC 5802: Salted Challenge Response Authentication Mechanism (SCRAM) SASL and GSS-API Mechanisms (Updated by RFC 7677)]
* [https://tools.ietf.org/html/rfc7677 ] RFC 7677: SCRAM-SHA-256 and SCRAM-SHA-256-PLUS Simple Authentication and Security Layer (SASL) Mechanisms
* [https://tools.ietf.org/html/rfc7677 RFC 7677: SCRAM-SHA-256 and SCRAM-SHA-256-PLUS Simple Authentication and Security Layer (SASL) Mechanisms]


<br/>


= Symmetrische Verschlüsselung =
= Symmetrische Verschlüsselung =
Zeile 83: Zeile 92:
* [http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf FIPS PUB 197: Advanced Encryption Standard (AES), National Institute of Standards and Technology, November 26, 2001]
* [http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf FIPS PUB 197: Advanced Encryption Standard (AES), National Institute of Standards and Technology, November 26, 2001]


<br/>


= Public-Key Cryptography Standards (PKCS) - RSA Laboratories =
= Public-Key Cryptography Standards (PKCS) - RSA Laboratories =
Zeile 100: Zeile 110:
* [https://tools.ietf.org/html/rfc7292 PKCS #12: Personal Information Exchange Syntax Version 1.1 (RFC 7292)]
* [https://tools.ietf.org/html/rfc7292 PKCS #12: Personal Information Exchange Syntax Version 1.1 (RFC 7292)]


<br/>


= Generic Security Service API (GSS-API) =
= Generic Security Service API (GSS-API) =
Zeile 109: Zeile 120:
* [https://tools.ietf.org/html/rfc5653 RFC 5653: Generic Security Service API Version 2: Java Bindings Update]
* [https://tools.ietf.org/html/rfc5653 RFC 5653: Generic Security Service API Version 2: Java Bindings Update]


<br/>


= Pretty Good Privacy (PGP) =
= Pretty Good Privacy (PGP) =
Zeile 115: Zeile 127:
* [https://tools.ietf.org/html/rfc5581 RFC 5581: The Camellia Cipher in OpenPGP]
* [https://tools.ietf.org/html/rfc5581 RFC 5581: The Camellia Cipher in OpenPGP]


<br/>


= Secure / Multipurpose Internet Mail Extensions (S/MIME) =
= Secure / Multipurpose Internet Mail Extensions (S/MIME) =
Zeile 121: Zeile 134:
* [https://tools.ietf.org/html/rfc5751 RFC 5751: Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 - Message Specification]
* [https://tools.ietf.org/html/rfc5751 RFC 5751: Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 - Message Specification]


<br/>


= X.509 Public Key Infrastructure =
= X.509 Public Key Infrastructure =
Zeile 128: Zeile 142:
* [https://tools.ietf.org/html/rfc6818 RFC 6818: Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile]
* [https://tools.ietf.org/html/rfc6818 RFC 6818: Updates to the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile]


<br/>


= Transport Layer Security (TLS) =
= Transport Layer Security (TLS) =
Zeile 133: Zeile 148:
* [https://tools.ietf.org/html/rfc5246 RFC 5246: The Transport Layer Security (TLS) Protocol Version 1.2]
* [https://tools.ietf.org/html/rfc5246 RFC 5246: The Transport Layer Security (TLS) Protocol Version 1.2]


<br/>


= Misc =
= Misc =
* [https://tools.ietf.org/html/rfc4648 RFC 4648: The Base16, Base32, and Base64 Data Encodings]
* [https://tools.ietf.org/html/rfc4648 RFC 4648: The Base16, Base32, and Base64 Data Encodings]
* [https://tools.ietf.org/html/rfc4422 RFC 4422: Simple Authentication and Security Layer (SASL)]
* [https://tools.ietf.org/html/rfc4422 RFC 4422: Simple Authentication and Security Layer (SASL)]
<br/>

Version vom 4. September 2019, 07:20 Uhr


OAuth2


OpenID Connect


Fast Identity Online (FIDO)


Security Assertion Markup Language 2.0 (SAML 2.0)


JSON Web Token et. al.


One Time Passwords


Einweg-Hashfunktionen


Authentifizierung


Challenge Response


Symmetrische Verschlüsselung


Public-Key Cryptography Standards (PKCS) - RSA Laboratories


Generic Security Service API (GSS-API)


Pretty Good Privacy (PGP)


Secure / Multipurpose Internet Mail Extensions (S/MIME)


X.509 Public Key Infrastructure


Transport Layer Security (TLS)


Misc