<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Crypto on u-random</title><link>https://u-random.dev/tags/crypto/</link><description>Recent content in Crypto on u-random</description><generator>Hugo -- gohugo.io</generator><language>it-it</language><lastBuildDate>Mon, 25 May 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://u-random.dev/tags/crypto/index.xml" rel="self" type="application/rss+xml"/><item><title>Cap 4 - Securing Your Network</title><link>https://u-random.dev/dump/certificazioni/security-plus/libro/cap-04-securing-your-network/</link><pubDate>Mon, 25 May 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/dump/certificazioni/security-plus/libro/cap-04-securing-your-network/</guid><description>IDS/IPS, VPN (IPsec/SSL), tunneling, wireless security (WPA2/WPA3), network segmentation avanzata. Cap 4 Gibson SY0-701.</description></item><item><title>SSL/TLS</title><link>https://u-random.dev/concetti/ssl-tls/</link><pubDate>Tue, 07 Apr 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/concetti/ssl-tls/</guid><description>Protocollo che cifra le connessioni di rete. TLS handshake, catena CA, Perfect Forward Secrecy, post-quantum cryptography. Confronto con SSH.</description></item><item><title>SSH Protocol - Secure Shell</title><link>https://u-random.dev/concetti/ssh-protocol/</link><pubDate>Sat, 28 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/concetti/ssh-protocol/</guid><description>Protocollo per connessioni remote cifrate. Sostituisce Telnet e rlogin. Handshake, TOFU, autenticazione con chiave, challenge-response, Perfect Forward Secrecy. Confronto con TLS.</description></item><item><title>sha256sum - SHA-256 checksum</title><link>https://u-random.dev/comandi/sha256sum/</link><pubDate>Thu, 26 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/comandi/sha256sum/</guid><description>Calcola e verifica hash SHA-256 di file. Usato per verificare l'integrita' di download, immagini ISO, copie forensi e rilevare modifiche non autorizzate ai file.</description></item><item><title>Cryptography</title><link>https://u-random.dev/concetti/cryptography/</link><pubDate>Sun, 22 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/concetti/cryptography/</guid><description>La crittografia protegge la Confidentiality e l'Integrity dei dati. Due approcci principali: simmetrica (una chiave, veloce) e asimmetrica (coppia pubblica/privata, lenta). I sistemi reali usano entrambe insieme.</description></item><item><title>Il lucchetto verde - cosa succede davvero in quei 250 millisecondi</title><link>https://u-random.dev/blog/come-funziona-una-connessione-https/</link><pubDate>Sun, 22 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/blog/come-funziona-una-connessione-https/</guid><description>&lt;p&gt;


&lt;/p&gt;
&lt;div style="border-left:3px solid #6366f1;background:rgba(99,102,241,0.06);padding:12px 16px;border-radius:0 6px 6px 0;margin:1.5rem 0;"&gt;
 &lt;div style="font-size:0.7rem;font-weight:800;letter-spacing:0.1em;color:#6366f1;text-transform:uppercase;margin-bottom:6px;"&gt;TL;DR&lt;/div&gt;
 &lt;div style="font-size:0.95rem;line-height:1.6;"&gt;&lt;ul&gt;
&lt;li&gt;Prima del TLS c'è TCP: tre pacchetti solo per aprire il canale&lt;/li&gt;
&lt;li&gt;&lt;code&gt;ClientHello&lt;/code&gt; è il nome reale del messaggio - lo vedi in Wireshark, è nell'RFC&lt;/li&gt;
&lt;li&gt;Browser e server derivano la stessa chiave senza mai trasmettersela (Diffie-Hellman)&lt;/li&gt;
&lt;li&gt;Ogni sessione usa chiavi nuove e le butta via - anche se qualcuno ruba la chiave del server tra un anno, il traffico di oggi resta illeggibile&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;

&lt;details style="border-left:3px solid #10b981;background:rgba(16,185,129,0.06);border-radius:0 6px 6px 0;margin:1.5rem 0;"&gt;
 &lt;summary style="padding:10px 16px;font-size:0.7rem;font-weight:800;letter-spacing:0.1em;color:#10b981;text-transform:uppercase;cursor:pointer;list-style:none;display:flex;align-items:center;gap:8px;"&gt;
 &lt;span style="font-size:0.65rem;transition:transform 0.2s;"&gt;▶&lt;/span&gt; $ history
 &lt;/summary&gt;
 &lt;div style="padding:4px 16px 12px;font-size:0.92rem;line-height:1.7;font-family:'JetBrains Mono','Fira Code',monospace;"&gt;&lt;ul&gt;
&lt;li&gt;&lt;a href="https://u-random.dev/comandi/openssl-s_client/" &gt;openssl s_client&lt;/a&gt; -connect google.com:443 -showcerts&lt;/li&gt;
&lt;li&gt;&lt;a href="https://u-random.dev/comandi/openssl-s_client/" &gt;openssl s_client&lt;/a&gt; -connect dominio.com:443 2&amp;gt;/dev/null | openssl x509 -noout -dates&lt;/li&gt;
&lt;li&gt;&lt;a href="https://u-random.dev/comandi/openssl-s_client/" &gt;openssl s_client&lt;/a&gt; -connect google.com:443 &amp;lt;/dev/null 2&amp;gt;/dev/null | openssl x509 -noout -text | &lt;a href="https://u-random.dev/comandi/grep/" &gt;grep&lt;/a&gt; -E &amp;quot;Subject|Issuer|Not After&amp;quot;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/details&gt;

&lt;p&gt;Ogni volta che scrivi &lt;code&gt;https://&lt;/code&gt; nel browser e premi invio, sullo sfondo succede qualcosa che la maggior parte degli sviluppatori web dà per scontato. Il lucchetto verde appare, la connessione è &amp;quot;sicura&amp;quot;, si va avanti.&lt;/p&gt;</description></item><item><title>Openssl</title><link>https://u-random.dev/comandi/openssl/</link><pubDate>Sun, 15 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/comandi/openssl/</guid><description>Toolkit per crittografia e SSL/TLS. Permette di creare certificati, cifrare file, e aprire connessioni SSL/TLS da terminale.</description></item><item><title>Openssl S_Client</title><link>https://u-random.dev/comandi/openssl-s_client/</link><pubDate>Sun, 15 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/comandi/openssl-s_client/</guid><description>Implementa un client SSL/TLS generico che stabilisce una connessione sicura con un server remoto. È essenzialmente un '&lt;a href="https://u-random.dev/comandi/netcat/" &gt;netcat&lt;/a&gt; con i superpoteri della cifratura'.</description></item><item><title>Ssh</title><link>https://u-random.dev/comandi/ssh/</link><pubDate>Sun, 15 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/comandi/ssh/</guid><description>Protocollo e client per l'accesso remoto cifrato. Permette di comandare una macchina remota (guest) dal proprio terminale locale (host) garantendo riservatezza e integrità dei dati tramite crittografia asimmetrica.</description></item><item><title>Xxd</title><link>https://u-random.dev/comandi/xxd/</link><pubDate>Sun, 15 Mar 2026 00:00:00 +0000</pubDate><guid>https://u-random.dev/comandi/xxd/</guid><description>Utility che genera hexdump o effettua l'operazione inversa (Hex-to-Binary). Il nome sta per hex dump.</description></item></channel></rss>