Digital certs

Digital certs

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Digital certs Herb 06-13-2008
Posted by =?Utf-8?B?SGVyYg==?= on June 13, 2008, 11:17 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I currently use a digital certificate generated from my domain server to
authenticate connections to ISA Server and encrypt traffic between
site-to-site VPNs.

Now I need an SSL cert to use for a website. Can I generate that from my
domain server also? If so, how does this compare to an SSL cert that you
purchase from a third party vendor?

Thank you, stullhe104
--
stullhe104

Posted by Vadim Rapp on June 13, 2008, 1:27 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Anyone can generate a certificate, the question is, who will trust it. If
you are using certificate between your computer A and your computer B, you
generate your own certificate and tell A and B to trust it. But you can't
force others to trust it. Others trust commonly-known certification
aithorities, so called root certificates, and down the tree from them. So
3rd party can be expected to trust only certificate that belongs to that
tree - yours does not.

From http://en.wikipedia.org/wiki/Certificate_authority

"...the market for SSL certificates (used for website security) is largely
held by a small number of multinational companies. This market has
significant barriers to entry since new providers must convince web browser
developers to include them in the list of trusted authorities in future
versions of the browser, and there is no automated means to add trusted
authorities to older versions. Thus there is an effective oligopoly of
approximately 20 root certificates that are already trusted in the most
popular versions of the most popular web browsers. "

Vadim Rapp
Polyscience
www.polyscience.com


>I currently use a digital certificate generated from my domain server to
> authenticate connections to ISA Server and encrypt traffic between
> site-to-site VPNs.
>
> Now I need an SSL cert to use for a website. Can I generate that from my
> domain server also? If so, how does this compare to an SSL cert that you
> purchase from a third party vendor?
>
> Thank you, stullhe104
> --
> stullhe104



Similar ThreadsPosted
Digital Certs - Revoked - Register Quicker? April 25, 2006, 12:50 pm
How do I delete my old ca certs... February 19, 2008, 10:45 am
subordinate ent CAs don't publish certs to AD after Win 2k3 SP1 July 23, 2005, 1:00 pm
MS-CHAP V2 and server certs November 20, 2006, 9:23 am
using certs in non-domain environments: January 23, 2008, 10:40 pm
Generate Verisign certs for one or two year ? August 9, 2005, 1:08 pm
Trusting Certs from Non Trusted root March 23, 2007, 6:38 pm
Expired Certs (This MUST be basic question) June 25, 2007, 9:15 pm
help understanding private/public certs September 2, 2007, 5:30 pm
standalone CA - cannot use browser to install certs February 1, 2008, 3:41 pm

The site map in XML format XML site map

Contact Us | Privacy Policy