Secure Socket Layer (SSL) is a protocol developed by Netscape in 1996 which quickly became the method of choice for securing data transmissions across the Internet. SSL is an integral part of most Web browsers and Web servers and makes use of the public-and-private key encryption system developed by Rivest, Shamir, and Adleman.
In order to make an SSL connection, the SSL protocol requires that a server should have a digital certificate installed. A digital certificate is an electronic file that uniquely identifies individuals and servers. Digital certificates serve as a kind of digital passport or credential which authenticate the server prior to the SSL session being established.
Typically, digital certificates are signed by an independent and trusted third party to ensure their validity. The "signer" of a certificate is known as a Certification Authority (CA), such as VeriSign, thawte and GeoTrust.
There are two main online security problems that SSL certificates help solve:
Solving these security problems allows online business to protect against the following scenarios:
So what are the practical applications of SSL certificates?
Firstly, looking at categories of data, the most common deployment is for securing transmission of financial information in ecommerce. However, with incidence of identity theft on the rise, protecting the transmission of a broad range of personally-identifiable information is becoming ever more important. This category of data would include identity and social security numbers, e-mail addresses and demographic information as well as account registration and login information.
In terms of applications and protocols, SSL Certificates can be used to secure the following:
GeoTrust True BusinessID with EV SSL certificates deliver the consumer confidence-building green address bar in high-security browsers, signifying high-level, industry-standard Extended Validation authentication and traditional SSL encryption for a compelling price. Every True BusinessID customer also receives the dynamic "Verified By GeoTrust" seal that displays the customer's company name and a real-time date/timestamp for authentication.
GeoTrust True BusinessID SSL certificates deliver strong authentication and traditional SSL encryption protection. These fully functional, organization-authenticated SSL certificates are available for a compelling price. Every True BusinessID customer also receives the dynamic "Verified By GeoTrust" seal that displays the customer's company name and a real-time date/timestamp for authentication.
GeoTrust's QuickSSL Premium certificates deliver domain control authentication and standard SSL encryption protection. Customers order these certificates via a fast online process and typically receive delivery of them within 10 minutes. Every QuickSSL Premium customer also receives the dynamic "Secured By GeoTrust" seal that displays a real-time date/timestamp for authentication.