The increasing digitalization and globalized use of the Internet have increased the exposure of people and institutions to cyber attacks that compromise their sensitive information, involving computer security systems in its mitigation; therefore it is emerging to improve the security of communications. This study presents an experimental prototype to implement free Let’s Encrypt TLS certificates at the DAME Clinic in Quito, improving communications security at the transport layer. A methodology was developed that included the installation and configuration of the Proxmox VE hypervisor, the implementation of virtual services, the installation of TLS certificates and vulnerability analysis. Free TLS certificates from Let’s Encrypt were installed on virtual services (web server, email and video conferencing) deployed on Proxmox VE. The vulnerability analysis, carried out using the QUALYS SSL LABS tool, showed a notable improvement in the security of communications, especially in the videoconferencing service, which obtained a Type A+ rating (TLSv1.2 - TLSv1.3). The proposed methodology facilitated the fulfillment of the research objectives, highlighting the importance of the use of containers in Proxmox VE for the centralized control of services and the improvement of security in the DAME Clinic. Obtaining as results of mitigation and improvement of its services, 35% in Web/WordPress, 65% in Conference/Jitsi and Email.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Implementing Free TLS Certificates for Virtual Services: An Experimental Approach in Proxmox VE

  • Milton Escobar,
  • Verónica Tintín,
  • Raul Gallegos

摘要

The increasing digitalization and globalized use of the Internet have increased the exposure of people and institutions to cyber attacks that compromise their sensitive information, involving computer security systems in its mitigation; therefore it is emerging to improve the security of communications. This study presents an experimental prototype to implement free Let’s Encrypt TLS certificates at the DAME Clinic in Quito, improving communications security at the transport layer. A methodology was developed that included the installation and configuration of the Proxmox VE hypervisor, the implementation of virtual services, the installation of TLS certificates and vulnerability analysis. Free TLS certificates from Let’s Encrypt were installed on virtual services (web server, email and video conferencing) deployed on Proxmox VE. The vulnerability analysis, carried out using the QUALYS SSL LABS tool, showed a notable improvement in the security of communications, especially in the videoconferencing service, which obtained a Type A+ rating (TLSv1.2 - TLSv1.3). The proposed methodology facilitated the fulfillment of the research objectives, highlighting the importance of the use of containers in Proxmox VE for the centralized control of services and the improvement of security in the DAME Clinic. Obtaining as results of mitigation and improvement of its services, 35% in Web/WordPress, 65% in Conference/Jitsi and Email.