What is a SSL?

Started by Jason, May 25, 2004, 02:40:23 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Jason

I've had a few ecommerce questions lately and found the following article that's pretty helpful:


----------------------------
What is a secure server certificate and what does it do?
A secure server certificate (also called cert) resides on a web server. Combined with the security components built into the web server and the visitor's browser, the secure server certificate provides the following functions for secure e-commerce transactions:

    * Confirmation to a visitor's browser that the company represented by the current domain being visited (somecompany.com) is, in fact, the company listed in the certificate. This prevents someone from just setting up a web site and claiming they are your company and accepting payments from visitors.

    * Sends all confidential information (such as credit card information) from the visitor's browser to the web server in a secure mode using encryption technology that prevents this information from being easily intercepted and used. This prevents someone from obtaining the confidential information during the transmission to the web server.

    * Adds a level of trust between the visitor and you by assuring them that the transfer of information will be encrypted and secure.

The first two functions are performed automatically by the web server and browser without any intervention required by the user.
----------------------------

Article found here

I'll add more to this as I come across helpful info.

As an fyi, Charlottezweb offers a SHARED SSL with your account.  What this means is that you can use the following domain to access your site through a secured connection (you'll notice the "padlock" icon in your browser): 

https://secure.charlottezweb.com/~youraccountname

This will provide 128bit security, however, you don't have the name branding of https://www.yoursite.com.  You have to purchase your own certificate if you want that.  This is highly recommended for security and legal reasons if you plan on taking credit card information on your sites.

Regards,
Jason