{"id":5794,"date":"2008-10-01T14:27:34","date_gmt":"2008-10-01T19:27:34","guid":{"rendered":"http:\/\/magic1host.com\/blog\/2008\/10\/01\/the-411-on-ssl-certificates\/"},"modified":"2008-10-01T14:27:34","modified_gmt":"2008-10-01T19:27:34","slug":"the-411-on-ssl-certificates","status":"publish","type":"post","link":"https:\/\/magic1host.com\/blog\/?p=5794","title":{"rendered":"The 411 on SSL Certificates"},"content":{"rendered":"<div style='italic;' class='uawbyline'>by Matt Hedges<\/div>\n<p>Find out about Secure Sockets Layer and how they can help you:<\/p>\n<p>With people having the ability to read the information of other folk, the Internet is not as safe as it once was. Hackers are people who are able to uncover the information that people pass on websites. It is also possible for them to get hold of confidential data like <a href=\"http:\/\/www.meyouworld.net\/EG\/tag\/Credit_Cards.html\" class=\"kblinker\" target=\"_blank\" title=\"More about Credit &raquo;\">credit<\/a> card details or passwords. Many hackers also have the ability to offer their own version of another person&#8217;s website and this can be hosted on their own server. This is done to fool customers who may be unaware of these issues. The majority of hackers act to obtain information that is of value and interest about people. One way of combating these hackers is by using the Secure Sockets Layer or SSL.<\/p>\n<p>The Secure Sockets Layer or SSL is a world wide standard security technology, which is developed by Netscape in 1994. It facilitates to establish an encrypted link between a browser and a web server. This link makes it certain that all the data, which passed between the web server and browser remains secure and private. It is recognized by a secured padlock that appears in the browser of the consumers. This protocol is used by a huge number of e-Business providers in order to shield their customer&#8217;s important information as well as to ensure that the online transactions remain confidential.<\/p>\n<p>The Certificate for SSL:<\/p>\n<p>A SSL Certificate offered by the Certification Authorities (also known as CA) is essential for any web server that wishes to use the protocol of the Secure Sockets Later. Many questions will be asked about your firm and its identity and from here you can choose to run the SSL on your own web server. Two cryptographic keys are generated, one is a Public Key, one is a Private Key, both originate from the web server. The public key does not allow backdoor entry or hidden methods. The key is held in a data file with the rest of your information; this data file is called a CSR, a Certificate Signing Request. The next task will be to submit this CSR. The CA will then go about verifying the information contained within the CSR and this will undertake the SSL Certificates process. After this, another certificate from SSL will be provided and this certificate will hold all the details and information to enable SSL use. The certificate for SSL is linked by the web server to the Private Key. This means a secure and coded link will be created between the visitors&#8217; browser and your very own site.<\/p>\n<p>None of these actions are witnessed by the visitor. They will be able to see they key symbol that will inform them that SSL encryption is providing a level of protection for them. If they wish to find out more details about the SSL certificate they can click on the lock icon which can be found in the right hand bottom corner of their screen. It is usually with people who can be held accountable and firms who are legally registered that these certificates are provided to.<\/p>\n<p>These SSL Certificates usually contains your company name, domain name, and your address, city, pin code, state and country. It further includes the expiration date of the Certificate as well as the other details of the Certification Authority, who is in charge for the issuance of the Certificate. Whenever the browser connects to a secure site, your SSL Certificate will recover the site&#8217;s SSL Certificate. It will check that the other site&#8217;s SSL Certificate has been issued by a trustworthy Certification Authority and that it is being utilized by the website for which it has been allotted. It will also check the expiry date of that certificate. If the other certificate fails on any one of these checks, the browser will display a warning message to the end user.<\/p>\n<p>The golden padlock which appears on the browser has generated a higher degree of confidence amongst shoppers and is recognized as a symbol of trust. This has been taken on by many electronic business providers in an attempt to convince customers to shop with them. A whole host of shopping carts and commercial sites now offer shoppers the facility of securing their information through use of the SSL certificates. One thing to remember though is that if this information is then emailed to you, the information contained within the email is not secure.<\/p>\n<p>Brand new functions:<\/p>\n<p>Many users may be aware of the SSL v2 version but the SSL v3 is a much improved version. The SHA-1 based cipher has been added and this offers assistance with regards to authenticating certificates. SSL v2 had some flaws like when cryptographic keys were utilized for both the authenticating messages and encryption. In addition to this, SSL v2 did not provide any level of protection for the handshake, leaving it open to &#8220;man in the middle downgrade attacks&#8221; occurring without anyone noticing.<\/p>\n<p>Furthermore, the Secure Sockets Layer has been recently been succeeded by Transport Layer Security TLS. This TLS is based itself on SSL and has been incorporated as an integral part of Netscape and Microsoft browsers as well as of most of the Web server products. In present days, the Secure Sockets Layer uses private and public key encryption system from RSA that also includes the utilization of a digital certificate.<\/p>\n<p>SSL Certificate, do you need one:<\/p>\n<p>* If privacy of others and yourself as well as a need to have trust in your site is important, then the purchase of the SSL certificate is vital.<\/p>\n<p>*  If you have an online store or accept online orders through credit cards you will need an SSL Certificate in order to safeguard the confidential information of your customers.<\/p>\n<p>* SSL Certificates can be a useful tool in an office if confidential data is placed on an intranet system.<\/p>\n<p>* An SSL Certificate helps you to process several sensitive data including date of birth, ID numbers, address, telephone number or license number safely.<\/p>\n<p> There is also a need to use SSL certificates to fully pass security and privacy requirements.<\/p>\n<p>Some helpful information about purchasing SSL Certificates:<\/p>\n<p> Although the Certificate Authority is an extremely wide one, there is a need to consider your requirements and budget before choosing who to buy from. There are a lot of SSL certificate firms that are able to meet many price ranges. There are 22 separate their parties who can be found from checking the Open Directory Project and there are also well over 20 root certificates that can be found in Internet Explorer and Firefox. The market however is dominated by a few firms and this is mainly down to pricing issues.<\/p>\n<p> There was a survey undertaken by Netcraft in 2005 which set out to find the largest vendor that offers SSL certificates. This was followed in January 2007 when Security Space set out to undertake a similar project. This latter survey listed a few firms as being highly rated. These sites include Equifax represented by its GeoTrust subsidiary (www.equifax.com), VeriSign which was represented by the Thawte subsidiary (www.verisign.com), in addition to GoDaddy\/Starfield (www.godaddy.com), Digicert (www.digicert.com) as well as Comodo (www.comodo.com).<\/p>\n<p>It can be seen that depending on what form of measurement is used, these six providers cover 95% of the market in this industry. The largest market share is held by Verisign with about 72% market share with Comodo coming next with around 18%. Geotrust has around 3.4% market share and GoDaddy and Entrust contain about 1% and 2.5% of the market share. The remaining providers comprise about 3 or 4% on average of the market.<\/p>\n<div class='uawresource'>\n<div style='italic;' class='uawabout'>About the Author:<\/div>\n<div class='uawlinks'>Republished with permission from WebHostingMadness.com, a publisher of <a href=\"http:\/\/www.webhostingmadness.com\">hosting company ratings<\/a>, comparisons and detailed articles about <a href=\"http:\/\/www.webhostingmadness.com\">the web hosting industry.<\/a><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Find out about Secure Sockets Layer and how they can help you:<\/p>\n","protected":false},"author":791,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[51],"tags":[122],"class_list":["post-5794","post","type-post","status-publish","format-standard","hentry","category-ecommerce","tag-ecommerce"],"_links":{"self":[{"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/5794","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=\/wp\/v2\/users\/791"}],"replies":[{"embeddable":true,"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5794"}],"version-history":[{"count":0,"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=\/wp\/v2\/posts\/5794\/revisions"}],"wp:attachment":[{"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5794"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5794"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/magic1host.com\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5794"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}