Amanda Tucker

48 articles published
14 topics covered
About
Amanda Tucker covers network security at SecureW2, where she has spent 5 years writing about PKI, RADIUS authentication, 802.1X, continuous trust, and device onboarding. She translates complex certificate and authentication concepts into practical guidance for IT and security teams. Amanda brings 7 years of professional writing experience and a background in research and analysis.
Cited by
Articles by

Amanda

How ECDSA and RSA compare on key size, performance, EAP-TLS use, and post-quantum readiness
PKI & Certificate-Based Authentication August 30, 2026
ECDSA vs. RSA: Which Algorithm Is Better for Security?

Choosing between ECDSA and RSA for your enterprise certificates is not a theoretical question. It affects how fast your 802.1X authentications complete, how much load your Remote Authentication Dial-In User...

A plain-language guide to extended validation SSL certificates: what the CA/Browser Forum requires, why the green address bar is gone, and when EV is worth the extra vetting.
PKI/Certificates August 29, 2026
What Is an EV SSL Certificate? Do You Need One?

Not every website needs the same level of certificate vetting. A personal blog is fine with a domain-validated certificate issued in minutes. A bank processing wire transfers has a different...

Learn how to manage certificate revocation for shared devices without disrupting network access.
PKI/Certificates August 20, 2026
PKI for Education: Handling Certificate Revocation for Shared Devices

A 1:8 Chromebook cart can quietly break around the eighth or tenth student login, when the per-user certificate stops re-installing and the entire cart drops off Wi-Fi. The same break...

Quantum encryption and post-quantum cryptography represent two different answers to the same problem: the looming threat of quantum computers against the encryption protecting your network today.
Protocols & Standards August 13, 2026
What Is Quantum Encryption and How Does It Work?

Every authentication event on your network relies on encryption to verify identity and protect the session. For decades, the math underlying that encryption has been treated as unbreakable in practice....

Most HTTPS and Wi-Fi authentication depends on a single certificate field that fails silently when it's wrong: the subject alternative name.
PKI/Certificates August 9, 2026
What Is a Subject Alternative Name (SAN)?

Every organization running HTTPS, Wi-Fi, or virtual private network (VPN) authentication depends on the subject alternative name field, often without realizing it. Misconfigure it and browsers display security errors. Leave...

A direct comparison of ZTNA and VPNs, covering security architecture, access control, performance, and when each model makes sense.
ZTNA & VPN August 9, 2026
ZTNA vs. VPN: Differences and Which Is Better for Secure Remote Access

Remote access has always involved a tradeoff: connectivity vs. control. Virtual private networks (VPNs) solved the connectivity problem for a generation of distributed workers, but that broad access comes with a...

A breakdown of how credential stuffing attacks exploit reused passwords, why brute-force defenses don’t stop them, and what closes the gap for good
Risks & Threats August 7, 2026
What Is Credential Stuffing? How Attacks Work and How to Stop Them

Every large data breach hands criminals a fresh list of usernames and passwords. They do not need to guess your password when they can simply try the one you already...

A technical guide comparing symmetric and asymmetric encryption, covering AES, RSA, and ECC, and how TLS combines both into the hybrid model that secures the modern web.
PKI/Certificates August 5, 2026
Symmetric vs. Asymmetric Encryption: How Each Works and When to Use Them

Every time a browser loads an HTTPS page, a virtual private network (VPN) establishes a tunnel, or a digital certificate is issued, two distinct encryption models work together. Understanding how...

A technical guide to the federal standard that governs cryptographic module validation, covering security levels and the CMVP process.
Protocols & Standards July 29, 2026
FIPS 140-3 Explained: A Guide to Compliance

Federal agencies and their vendors operate under a straightforward rule: any cryptographic module handling sensitive data must be validated against a FIPS 140 standard. That rule has not changed since...