About the Author:
Matt Wood has been in the information technology industry for over 20 years. Over that 20 years he’s worked at a number of high profile government customers in the national security and intelligence sector. In 2013, DIOS-Tech was started with the goal of delivering efficient solutions to meet the mission critical needs of the United States defense environment. In 2023 they celebrated our ten years of helping customers mission critical work succeed. Throughout his tenure with DIOS, Matt has enjoyed assisting our wide variety of customers, while expanding his technical knowledge. This experience has helped him leverage a variety of perspectives to ensure continued mission success.
mwood@dios-tech.com
References
Oppliger, R. (2009). SSL and TLS: Theory and Practice.
Subramanium, G (n.d.). About SSL and Flaws in SSL 2.0. Retrieved February 8, 2025, from https://www.seekahost.com/flaws-in-ssl-version-2/
K39580786: Configure the SSL profile to allow TLS 1.2 and 1.3 only. (2023, March 8). F5 https://my.f5.com/manage/s/article/K39580786
SSL 3.0 Protocol Vulnerability and POODLE Attack.(2016, September 30). CISA. https://www.cisa.gov/news-events/alerts/2014/10/17/ssl-30-protocol-vulnerability-and-poodle-attack
What is the difference between a MAC and HMAC, and how does HMAC enhance the security of MACs? (2023, August). EITCA. https://eitca.org/cybersecurity/eitc-is-acc-advanced-classical-cryptography/message-authentication-codes/mac-message-authentication-codes-and-hmac/examination-review-mac-message-authentication-codes-and-hmac/what-is-the-difference-between-a-mac-and-hmac-and-how-does-hmac-enhance-the-security-of-macs/
Banach, Z (2024, November 14). How the BEAST attack works: Reading encrypted data without decryption. https://www.invicti.com/blog/web-security/how-the-beast-attack-works/
Nohe, P (2018, December 12). Nearly 21% of the world’s top 100,000 websites still aren’t using HTTPS. https://www.thesslstore.com/blog/nearly-21-of-the-worlds-top-100000-websites-still-arent-using-https/
Vera (2024, November 26). How to Enable TLS 1.2 in Windows 10/11, Windows 7 & Server 2012. https://www.minitool.com/news/enable-tls-1-2-windows-10-11-7.html
Sherif, A (2024, August 8). Windows operating systems market share of desktop PCs worldwide 2017-2024. https://www.statista.com/statistics/993868/worldwide-windows-operating-system-market-share/
API Gateway now supports TLS 1.3. (2024, February 15). https://aws.amazon.com/about-aws/whats-new/2024/02/api-gateway-tls-1-3/
Rahul (2024, January 22). How to Enable TLS 1.2 on Windows Server – TecAdmin. https://tecadmin.net/enable-tls-on-windows-server-and-iis/
Rahul (2024, June 6). How to enable TLS 1.3, TLS1.2 only in Apache. https://tecadmin.net/enable-tls-version-apache/
Vivek, G (2024, September 10). How To Configure Nginx to use TLS 1.2/1.3 only. https://www.cyberciti.biz/faq/configure-nginx-to-use-only-tls-1-2-and-1-3/
Further Reading
- https://isc.sans.edu/diary/29908
- https://www.ssldragon.com/blog/history-of-ssl/
- https://www.digicert.com/blog/evolution-of-ssl
- https://www.acunetix.com/blog/articles/history-of-tls-ssl-part-2/
Frederick Chamber Insights is a news outlet of the Frederick County Chamber of Commerce. For more information about membership, programs and initiatives, please visit our website.