skip book previous and next navigation links
go up to top of book: HP OpenVMS Guide to System SecurityHP OpenVMS Guide to System Security
go to beginning of part: Security OverviewSecurity Overview
go to beginning of chapter: Understanding System SecurityUnderstanding System Security
go to previous page: Common Data Security Architecture (CDSA)Common Data Security Architecture (CDSA)
go to next page: KerberosKerberos
end of book navigation links

Secure Sockets Layer (SSL) 



Secure Sockets Layer (SSL) is the open standard security protocolfor the secure transfer of sensitive information over the Internet.SSL provides three things: privacy through encryption, server authentication, andmessage integrity. Client authentication is available as an optionalfunction.

Starting with Version 7.3-1, HP provides SSL as part of theOpenVMS Alpha operating system. HP SSL is compatible with OpenVMSAlpha Version 7.2-2 and higher, and OpenVMS VAX Version 7.3 andhigher.

Protecting communication links to OpenVMS applications overa TCP/IP connection can be accomplished through the use of SSL.The OpenSSL APIs establish private, authenticated and reliable communications linksbetween applications.

The SSL protocol works cooperatively on top of several otherprotocols. SSL works at the application level.The underlying mechanismis TCP/IP (Transmission Control Protocol/Internet Protocol), whichgoverns the transport and routing of data over the Internet. Applicationprotocols, such as HTTP (HyperText Transport Protocol), LDAP (LightweightDirectory Access Protocol), and IMAP (Internet Messaging AccessProtocol), run on top of TCP/IP. They use TCP/IP to support typicalapplication tasks, such as displaying web pages or running emailservers.

SSL addresses three fundamental security concerns about communicationover the Internet and other TCP/IP networks:

For more information about SSL, see HP Open SourceSecurity for OpenVMS, Volume 2: HP SSL for OpenVMS orthe HP SSL web site at

http://h71000.www7.hp.com/openvms/products/ssl/


go to previous page: Common Data Security Architecture (CDSA)Common Data Security Architecture (CDSA)
go to next page: KerberosKerberos