Keyboard shortcuts

Press or to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Appendix J: References

References & Further Reading

Curated list of authoritative resources for deepening your PKI and certificate knowledge.

Standards & RFCs

Core PKI Standards

TLS/SSL

Cryptographic Algorithms

Industry Guidelines

CA/Browser Forum

NIST Publications

ETSI Standards

Books

Foundational

  • “Network Security with OpenSSL” by Pravir Chandra, Matt Messier, John Viega O’Reilly, 2002 - Comprehensive OpenSSL guide

  • “PKI Uncovered” by Andre Karamanian, Siva Sathianathan Cisco Press, 2011 - Enterprise PKI design patterns

  • “Bulletproof SSL and TLS” by Ivan Ristic Feisty Duck, 2022 - Authoritative guide to deploying TLS correctly

Advanced

  • “Serious Cryptography” by Jean-Philippe Aumasson No Starch Press, 2017 - Modern cryptographic algorithms and protocols

  • “Applied Cryptography” by Bruce Schneier Wiley, 1996 - Classic text on cryptographic protocols

Online Resources

Documentation

Testing Tools

Tutorials & Blogs

Videos & Courses

  • “Public Key Cryptography” (Khan Academy) Introduction to RSA and key exchange

  • “How HTTPS Works” (Cloudflare YouTube) Animated explanation of TLS handshake

  • Pluralsight - “PKI Architecture and Implementation” Comprehensive video course on enterprise PKI

Software & Tools

CA Software

Certificate Management

Libraries

Communities & Forums

Research Papers

  • “The Most Dangerous Code in the World” (Martin et al., 2012) Analysis of SSL certificate validation vulnerabilities

  • “Analysis of the HTTPS Certificate Ecosystem” (Durumeric et al., IMC 2013) Large-scale study of TLS deployment

  • “SoK: SSL and HTTPS Revisiting past challenges and evaluating certificate trust model enhancements” (Clark & van Oorschot, S&P 2013)

Compliance Frameworks


Stay Updated: PKI and TLS standards evolve continuously. Subscribe to the IETF TLS working group mailing list and follow security advisories from your CA and software vendors.