Security and Cryptography
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationSecurity and Cryptography

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old January 2nd, 2005, 10:49 AM
amahmood amahmood is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2004
Posts: 184 amahmood User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 1 Day 20 h 24 m 34 sec
Reputation Power: 5
Confused about SSL, Keys and Cert ...

I have read that for SSL I just need to buy a private and public key and I don't need anything else but my host says that I have to buy "security certificate" and a "dedicated IP".
but some pals say that I can use a "shared ssl" and others say that I can find it all for free.

I am realy confused. Could somebody give me an step by step guide on How to have that security icon at the buttom of the browser and an https://.

Reply With Quote
  #2  
Old January 3rd, 2005, 06:53 AM
mitakeet's Avatar
mitakeet mitakeet is offline
Last Day: May 28, 2005
Dev Shed Demi-God (4500 - 4999 posts)
 
Join Date: Jul 2003
Location: Maryland
Posts: 4,575 mitakeet User rank is Sergeant (500 - 2000 Reputation Level)mitakeet User rank is Sergeant (500 - 2000 Reputation Level)mitakeet User rank is Sergeant (500 - 2000 Reputation Level)mitakeet User rank is Sergeant (500 - 2000 Reputation Level)mitakeet User rank is Sergeant (500 - 2000 Reputation Level) 
Time spent in forums: 1 Week 2 Days 9 h 51 m 4 sec
Reputation Power: 21
You don't buy a private and a public key, you buy a key-pair (they are inextricably mated together). You MUST have a dedicated IP address in order to have a meaningful cert as it is part of the cert's formation. I believe you can update the cert (I don't remember off hand how the entire handshake process works) to reflect a change in IP for free, but I am sure that there is a limited number of times you can do that and hosting via a cable/DSL modem that is constantly changing IPs is likely to be more than the allowed number. You can create a self-signed cert (most browsers will popup a warning that it is a self-signed cert), but that won't help you as your IP changes, but I believe all the user gets is a warning that the IP/name does not match the cert. If all you want is encrypted communication, a self-signed cert is fine and does not cost a penny. Regarding HTTPS, that is a separate web server (though some versions will listen on the secure and non-secure ports, but it is probably best to have separate servers (software server, not physical server)) running on your box that is configured for the HTTPS protocol and has the cert embedded in it (self-signed or otherwise). How to implement that is specific to the server, read the manual. Many free servers lack HTTPS, the protocol is much more complex than plain HTTP, but I am pretty sure that Apache has it embedded.
__________________

Left DevShed May 28, 2005. Reason: Unresponsive administrators.
Free code: http://sol-biotech.com/code/.
Secure Programming: http://sol-biotech.com/code/SecProgFAQ.html.
Performance Programming: http://sol-biotech.com/code/PerformanceProgramming.html.

It is not that old programmers are any smarter or code better, it is just that they have made the same stupid mistake so many times that it is second nature to fix it.
--Me, I just made it up

The reasonable man adapts himself to the world; the unreasonable one persists in trying to adapt the world to himself. Therefore, all progress depends on the unreasonable man.
--George Bernard Shaw

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationSecurity and Cryptography > Confused about SSL, Keys and Cert ...


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 6 hosted by Hostway
Stay green...Green IT