Keyboard shortcuts

Press or to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Apéndice J: Referencias

Referencias y Lectura Adicional

Lista curada de recursos autoritativos para profundizar tu conocimiento de PKI y certificados.

Estándares y RFCs

Estándares PKI Core

TLS/SSL

Algoritmos Criptográficos

Guías de Industria

CA/Browser Forum

Publicaciones NIST

Estándares ETSI

Libros

Fundamentales

  • “Network Security with OpenSSL” por Pravir Chandra, Matt Messier, John Viega O’Reilly, 2002 — Guía integral de OpenSSL

  • “PKI Uncovered” por Andre Karamanian, Siva Sathianathan Cisco Press, 2011 — Patrones de diseño PKI empresarial

  • “Bulletproof SSL and TLS” por Ivan Ristić Feisty Duck, 2022 — Guía autoritativa para desplegar TLS correctamente

Avanzados

  • “Serious Cryptography” por Jean-Philippe Aumasson No Starch Press, 2017 — Algoritmos y protocolos criptográficos modernos

  • “Applied Cryptography” por Bruce Schneier Wiley, 1996 — Texto clásico sobre protocolos criptográficos

Recursos en Línea

Documentación

Herramientas de Prueba

Tutoriales y Blogs

Videos y Cursos

  • “Public Key Cryptography” (Khan Academy) Introducción a RSA e intercambio de clave

  • “How HTTPS Works” (Cloudflare YouTube) Explicación animada de handshake TLS

  • Pluralsight — “PKI Architecture and Implementation” Curso de video comprehensivo sobre PKI empresarial

Software y Herramientas

Software CA

Gestión de Certificados

Bibliotecas

Comunidades y Foros

Artículos de Investigación

  • “The Most Dangerous Code in the World” (Martin et al., 2012) Análisis de vulnerabilidades de validación de certificado SSL

  • “Analysis of the HTTPS Certificate Ecosystem” (Durumeric et al., IMC 2013) Estudio a gran escala de despliegue TLS

  • “SoK: SSL and HTTPS Revisiting past challenges and evaluating certificate trust model enhancements” (Clark & van Oorschot, S&P 2013)

Marcos de Cumplimiento


Mantenerse Actualizado: Los estándares PKI y TLS evolucionan continuamente. Suscríbete a la lista de correo del grupo de trabajo TLS de IETF y sigue avisos de seguridad de tu CA y proveedores de software.