Answer the question
In order to leave comments, you need to log in
Why are CAs needed in SSL?
Asymmetric encryption does all the work of securing HTTPS traffic. Those. it is enough that the server sends its public key, with the help of which the client encrypts the key of the further session and transfers it to the server. That's it, traffic is protected from man-in-the-middle attacks, and no certification centers are needed.
So what problem does all this extra fiddling with certificates solve?
Answer the question
In order to leave comments, you need to log in
So that it is impossible to forge a certificate and be sure that there will be no mitm attack
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question