← all papers · overview

Secure by default - the case of TLS

Abstract

Default configuration of various software applications often neglects security objectives. We tested the default configuration of TLS in dozen web and application servers. The results show that "secure by default" principle should be adopted more broadly by developers and package maintainers. In addition, system administrators cannot rely blindly on default security options.

Related papers

Ranked by semantic similarity — how closely each paper's abstract matches this one (100% = near-identical topic).