help understanding private/public certs

help understanding private/public certs

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
help understanding private/public certs relikwie 09-02-2007
Posted by relikwie on September 2, 2007, 5:30 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hi, we have to communicate with a customer who insist of using secure
communication.
The communication will be done by a SOAP application developed
in .NET, to the customers werbservice.

Now the customer has sent us a public key to connect to their service,
and they have asked us to send
them our public key. So, I went to verisign and ordered a standard SSL
test certificate. I did this
by generating a CSR from IIS6. After giving this on the VeriSign site
I got a certificate with which I
could fininsh the pending request in IIS6.

Now how I see this cert on IIS is that connecting clients can validate
our webserver with VeriSign to see if it is trusted. But how can I
send a public key to our customer. How do I generate this public.
Or is it the same key I have received from VeriSign?

I have tested adding this cert to a webbrowser and connect to the
webserver, but this doen't seem to work.

Just can't grasp this certificate realm, if somone could shed some
light on this matter, please...


Thanks in advance.


Posted by S. Pidgorny on September 3, 2007, 4:54 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Open the Web site in browser and save the SSL certificate (File -
Properties - Certificates button - Details tab - Copy to File...). The
certificate is a signed public key that should be sufficient.

Peter Gutmann has written an excellent overview of PKI: "Everything you
Never Wanted to Know about PKI but were Forced to Find Out"
(http://www.cs.auckland.ac.nz/~pgut001/pubs/pkitutorial.pdf)

--
Svyatoslav Pidgorny, MS MVP - Security, MCSE
-= F1 is the key =-

* http://sl.mvps.org * http://msmvps.com/blogs/sp *

> Hi, we have to communicate with a customer who insist of using secure
> communication.
> The communication will be done by a SOAP application developed
> in .NET, to the customers werbservice.
>
> Now the customer has sent us a public key to connect to their service,
> and they have asked us to send
> them our public key. So, I went to verisign and ordered a standard SSL
> test certificate. I did this
> by generating a CSR from IIS6. After giving this on the VeriSign site
> I got a certificate with which I
> could fininsh the pending request in IIS6.
>
> Now how I see this cert on IIS is that connecting clients can validate
> our webserver with VeriSign to see if it is trusted. But how can I
> send a public key to our customer. How do I generate this public.
> Or is it the same key I have received from VeriSign?
>
> I have tested adding this cert to a webbrowser and connect to the
> webserver, but this doen't seem to work.
>
> Just can't grasp this certificate realm, if somone could shed some
> light on this matter, please...
>
>
> Thanks in advance.
>



Similar ThreadsPosted
Need Help Understanding Scope of CIFS Protocol March 15, 2007, 2:06 am
Understanding Account Name Forms (e.g. BUILTIN accounts in DNS form?) August 15, 2006, 1:12 pm
How do I delete my old ca certs... February 19, 2008, 10:45 am
Digital certs June 13, 2008, 11:17 am
subordinate ent CAs don't publish certs to AD after Win 2k3 SP1 July 23, 2005, 1:00 pm
MS-CHAP V2 and server certs November 20, 2006, 9:23 am
using certs in non-domain environments: January 23, 2008, 10:40 pm
Generate Verisign certs for one or two year ? August 9, 2005, 1:08 pm
Trusting Certs from Non Trusted root March 23, 2007, 6:38 pm
Expired Certs (This MUST be basic question) June 25, 2007, 9:15 pm

The site map in XML format XML site map

Contact Us | Privacy Policy