Abstract:
In this paper we present SmartSSL as a policy-based solution for assuring the security of Web servers and that employs SSL in an efficient way. SmartSSL is content-based and applies SSL dynamically on parts of the Web traffic, as configured by a security policy. SmartSSL does not require any modifications on the client and is designed in a platform-independent manner. SmartSSL can be seamlessly integrated into existing server platforms. Implementation results show substantial performance improvement for SmartSSL as compared to bulk SSL. © 2007 IEEE.