Got it

What is SSL Offloading?

Latest reply: Jan 21, 2022 09:03:28 427 28 22 0 0

    SSL (Secure Sockets Layer) is a protocol aimed at HTTP security during HTTP requests and responses. SSL relies on encryption with a key to enable communication between client and server to interact securely. Encryption of sensitive information provides protection against Man in The Middle attacks by restricting cyber attackers.

Encryption and decryption operations with SSL can strain resources by seriously consuming them. In order to make these processes more effective and efficient, these processes can be done by installing a special server. The process of balancing the traffic generated by using SSL on this specially installed web server is called SSL Offloading.

 

How SSL Offloading Works

SSL Offloading is performed by having a device called Load Balancer between the browser and the server during encryption and decryption. Load Balancer does not provide a new SSL certificate context. It performs this operation with a private key using the existing SSL certificate contents on the server.

There are two types of SSL Offloading methods available: SSL Termination and SSL Bridging.

 

SSL Termination is based on a method whose main purpose is to speed up the decryption process. After connecting to the Load Balancer as HTTPS during the connection requested by the Client, it connects to the web server from the Load Balancer via HTTP protocol. While the connection between the Client and the Load Balancer is encrypted, the data exchange between the Load Balancer and the Server is provided unencrypted.

ssl-termination

SSL Termination, the most general way of working is as follows:

·Load Balancer is connected between browser and server.

·When the browser tries to establish an SSL/TLS connection, the Public and Private Keys during the session are created between the browser and the load balancer.

·All data encrypted by the browser reaches the load balancer device first.

·Load Balancer decrypts the data using the symmetric session key and forwards the data unencrypted to the server.

·The server receives the data in clear text (plain text) and does not need to be decrypted.

·The server sends its response to the load balancer as clear text.

·Load Balancer encrypts the unencrypted data using the session key and sends it to the client.

·The client decrypts the data using the same session key.



 

SSL Bridging 

SSL Bridging is a more suitable method for websites where users have critical data such as credit card information, health data, TR ID number. In some cases, such websites may have high HTTPS traffic. These effects can last for a long time on websites during malicious activities by the client. For such situations, SSL Bridging is a more secure and effective solution than SSL Termination. SSL Bridging exists between client and load balancer as in SSL Termination. 

ssl-bridging


SSL Bridging, the most general way of working is as follows:

·A client decrypts the data by sending the encrypted data to the load balancer using HTTPS.

·Load Balancer examines packets in HTTPS traffic and blocks if it detects suspicious activity.

·This process is similar to MitM (Man-in-the-Middle Attack). However, this process is done for control rather than exploitation.

·Instead of transmitting the clear text (plain text) data it obtained to the server, the load balancer re-encrypts it and is transmitted to the server in this way. The data is transmitted in an encrypted manner at every stage.

 

 


Good share
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:22:35 (0) (0)
Thank you for your support  
Good to know about SSL (Secure Sockets Layer), thanks
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:22:47 (0) (0)
Thank you for your support  
Interesting content
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:22:57 (0) (0)
Thank you for your support  
andersoncf1
MVE Author Created Dec 23, 2021 23:14:36

Thanks for sharing
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:23:06 (0) (0)
Thank you for your support  
WELL DONE MATE
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:23:15 (0) (0)
Thank you for your support  
INTERESTING POST, THANK YOU FOR SHARING
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:23:23 (0) (0)
Thank you for your support  
GOOD
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:23:32 (0) (0)
Thank you for your support  
Nice
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:24:02 (0) (0)
Thank you for your support  
thank u for sharing
View more
  • x
  • convention:

hemin88
hemin88 Created Dec 24, 2021 14:23:48 (0) (0)
Thank you for your support  
12
Back to list

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.