Masibethele ukusombulula umba wesatifikethi kwizixhobo ezindala ze-Android

I-Encrypt

Kwiiveki ezidlulileyo Sabelana apha kwibhlog iindaba ezithi Masibethelwe (engenzi nzuzo, igunya elilawulwa luluntu elinikezela izatifikethi simahla kuye wonke umntu) uxwayise abasebenzisi ngotshintsho olusondeleyo kwisiginitsha ezinokubangela iingxaki kwaye ngaphezulu kwako konke ukulahleka kokuhambelana malunga ne-33% yezixhobo ze-Android ezisetyenziswayo.

Kwaye oku kungenxa yokuba ibhengeza inguqu ekuveliseni utyikityo kusetyenziswa kuphela isiqinisekiso sayo seengcambu, ngaphandle kokusebenzisa isatifikethi esisayiniweyo sisayinwe ligunya lesiqinisekiso se-IdenTrust.

Kwakhankanywa ukuba ukusukela nge-11 kaJanuwari, ngo-2021, kuya kwenziwa utshintsho kwi-Encrypt API kwaye ngokwakhona, abathengi be-ACME baya kufumana izatifikethi ze-ISRG Root X1 ngaphandle kokutyikitywa.

Uhlobo olutsha lwe-Encrypt ingcambu yesatifikethi ikhankanyiwe ukuba iyahambelana nazo zonke izikhangeli zangoku, kodwa yamkelwa kuphela njenge-Android 7.1.1, ekhutshwe ekupheleni kuka-2016 (ukuba ufuna ukwazi okungakumbi malunga neendaba, unokuqhagamshelana upapasho Kule khonkco ilandelayo).

Kodwa ngoku, Masibethele ngokufihlakeleyo ukuba isicwangciso sihlaziyiwe Kwaye ukungqinelana nezixhobo ezindala ze-Android kuya kuqhubeka ubuncinci iminyaka emithathu.

Utshintsho lwe-API icwangciselwe uJanuwari 11, okuthetha ukuba kutshintshelwe ekunikezelweni okungagqibekanga kwezatifikethi eziqinisekiswe kuphela sisatifikethi seengcambu ISRG Root X1, ngaphandle kokutyikitywa, ihlehliselwe uJuni 2021.

Siyavuya ukwazisa ukuba siphuhlise indlela yezixhobo ezindala ze-Android ukugcina amandla abo okundwendwela iisayithi ezisebenzisa ukuBethela iziqinisekiso emva kokuba abathengisi bethu abasayine umnqamlezo bephelile. Asisacwangcisi naluphi na utshintsho ngoJanuwari olunokubangela imiba yokuhambelana kwabaBhalisi be-Encrypt.

Kwangelo xesha kwagqitywa njengokhetho lokunika ithuba lokucela esinye isatifikethi, Iqinisekiswe ngokwesikimu esidala sokuqinisekisa ukungqinisisa kunye nokugcina ukuhambelana nezixhobo kwivenkile yesatifikethi seengcambu esingafakwanga isatifikethi se-Encrypt.

Esinye isatifikethi siya kwenziwa ngasekupheleni kukaJanuwari okanye ekuqaleni kukaFebruwari 2021 njengenxalenye yesivumelwano esongezelelweyo kunye negunya lesiqinisekiso se-IdenTrust. Ukongeza kwi-ISRG Root X1 isatifikethi seengcambu ze-Encrypt, esi satifikethi siya kutyikitywa kusetyenziswa isatifikethi se-IdenTrust's DST Root CA X3.

Ukutyikitywa komnqamlezo iya kusebenza iminyaka emithathu, elingaphantsi kwexesha lokuqinisekiswa kwesiqinisekiso seengcambu eziphambili ISRG Root X1.

Kuba ukutyikitywa komnqamlezo kuya kuphelelwa lixesha ngaphambi kokuba utyikityo lube nesiqinisekiso esisisiseko seNgcambu, iingxaki ezifanayo nesigameko seAdrTrust ingcambu yesatifikethi esisetyenziselwa ukutyikitywa kwezatifikethi ezivela kwiGunya lokuQinisekiswa kweCandelo leCandelo leCandelo (iComodo ).

Izikhangeli ziphathe ngokuchanekileyo ukuphela kwesatifikethi somnqamlezo weAddust, kodwa ibangele ukuphazamiseka okukhulu kwiinkqubo ze-OpenSSL kunye ne-GnuTLS, nangona esona siqinisekiso seComodo besisebenza kwaye ikhonkco lokuthembela ngesiqinisekiso sangoku lisaqhubeka.

Ukuqinisekisa ukuba isatifikethi esitsha se-Encrypt asiyenzi imiba efanayo yokuhambelana, i-IdenTrust kunye ne-Let Encrypt yesiphathamandla sizimisele ukuphonononga iskimu esenziweyo kusetyenziswa abaphicothi zincwadi bangaphandle.

Njengesikhumbuzo, isatifikethi seengcambu esine-Encrypt siyahambelana nazo zonke izikhangeli zangoku, kodwa samkelwa kuphela njengeqonga le-Android 7.1.1, elikhutshwe ekupheleni kuka-2016. Zonke izixhobo ze-Android zisebenzisa i-Android 66,2 kunye neenguqulelo ezintsha.

I-33,8% yezixhobo ze-Android ezisetyenziswayo azinayo idatha evela kwi-Let Encrypt root certificate, oko kukuthi, bafuna isatifikethi esisayiniweyo esongeziweyo kunye nesatifikethi seengcambu ezihambelana neenguqulelo zangaphambili ze-Android ukuqhubeka nokusebenza ngokuchanekileyo. Ukuba uzama ukuvula iisayithi ezisayinwe kuphela ngesiQinisekiso seNgcaciso esinezixhobo kwezi zixhobo, kuya kubakho impazamo.

Ekugqibeleni, ukuba unomdla wokwazi okungakumbi ngayo Ungajonga iinkcukacha zeendaba kwinqaku lokuqala onokufikelela kulo eli khonkco lilandelayo.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.