rdroms / draft-green-tls-static-dh-in-tls13

Work area for Internet Draft draft-green-tls-static-dh-in-tls13
0 stars 0 forks source link

Fix drawing in Figure 1 #29

Closed rdroms closed 7 years ago

rdroms commented 7 years ago

From Steve Fenter

                                  ********************************
                                 *                                *
                                *            +--------+            *
                               *   TLS       |  Web   |             *
                              * Termination  + Server +              *
                             *      |       /|        |\              *
   +---------+  +----------+ * +----|-----+/ +--------+ \+----------+ *
   |         |  |          | * |   Load   +              + Back-end | *
   | Browser +--+ Internet |-*-+ Balancer |              |  Server  | *
   |         |  |          | * |    |     +              +          | *
   +---------+  +----------+ * +----------+\ +--------+ /+----------+ *
                             *      |      .\|  Web   |/.             *
                             *            .  + Server +  .            *
                             *            .  |        |  .            *
                             *            .  +--------+  .            *
                             *            .              .            *
                             *            .   --------   .            *
                             *             . /  TLS   \ .             *
                             *              | Decrypter|              *
                              *              \        /              *
                               *              --------              *
                                *                                  *
                                 *** Enterprise Network Boundary **

                                    |
   <-----Ephemeral Key (EC)DHE----->|<--------Static Key ECDHE-------->
                                    |

             Figure 1: Enterprise TLS Decryption Architecture
rdroms commented 7 years ago

Change made and update pushed.