Article Directory
Free Online Article Directory. For Article Authors & Publishers

Learning about SSL on the Internet

Have you ever ordered some products over the web? Ever noticed the little lock icon in the corner of the browser windows? It's actually surprising how little we know about the security we rely on to keep our transactions secure. Well the security that protects the majority of our online transactions is based on SSL.

First things first, SSL stands for Secure Socket layer, the system which was developed by Netscape in the mid 1990s for use with their Netscape Navigator web browser. This browser was the very first to offer secure and reliable e-commerce features. It addressed the problem that when browsing the web anyone could spy on your communications. The issue is mainly due to the complete lack of security in the HTTP protocol, which means that it is not safe to send your credit card or any personal details across the web.

So netscape designed a protocol, a new way for two computes to talk with each other, in fact to send encrypted messages to each other. This made it impossible for anyone to read the messages being sent apart from the two computers involved.

The way it works is for the owner of the web server to get what's called a digital certificate from a company called a certification authority (CA). Each certificate comes with a link to the company that issued it, and eventually ends at what's called a "root" CA.

Every browser has a list of CAs that are considered "trustworthy." When you make a secure connection to a web server that has a digital certificate, your browser traces up what's called the "chain of authority" - checking each certificate to see if the CA that issued it is in the list. If the browser gets all the way back to the root CA without finding it in the list, you get a warning that this certificate is not trusted.

When a certificate is not trusted, you don't know for sure that the information listed in the certificate - the company name, address, phone number, etc. - is accurate. Trusted CAs verify business licenses and contact information. Any of the Other CAs may not. But even if the contact information isn't verified, the traffic between your browser and the web server is secure from eavesdroppers.

Once the browser has established that you want to trust this web site's certificate, whether because the CA is in the browser's list or you confirm your trust in the warning dialog, the two computers will exchange "keys."

A "key" is just a large number that is mathematically related to another number in a very specific way. The way these numbers are chosen is complex; explanations of the process tend to start with things like "Agree on a finite cyclic group G with a generating element g in G." Like most cryptographic concepts, it's probably easiest to just pretend it's magic.

Each computer will create two keys. The special mathematical relationship of these keys guarantees that any data encrypted with one key can only be decrypted with the other. One of these keys is kept secret, and the second is sent to the other machine.

Once the keys are exchanged, each machine uses its own secret key and the key received from the other machine to encrypt any data it sends. When the other machine receives the data, it will decrypt the data using the two keys it has.

Because the keys will only decrypt data encrypted with the matching keys, each machine knows both that the message came from the same machine, and that it was intended for this machine. So the data is secure, and nobody can spy on it.

Author Resource:- Protect your privacy online and your identity by surfing through a High Anonymity proxy. To learn about other privacy issues read this blog - Online Privacy protection
Submitted 2009-10-25 08:49:34
By: John Greenhoff 29 or more times read
Article Read 97 Times
Article From
Article Listed
[Valid RSS feed]  John Greenhoff's Author Feed
http://www.articlelisted.com/author-rss-feed.php?rss=2014
[Valid RSS feed]  Category Rss Feed
http://www.articlelisted.com/rss.php?rss=39

Related Articles

  • Do Free Anonymizing Services Protect Anything?


    Free anonymizing proxies are readily available all over the Internet. There are shows that you install on your computer to access these proxies as well as there are proxies that you can access over a webpage.
  • Could Possibly A VPN Be Penetrated?


    VPN services use sophisticated technologies to provide anonymity and information protection for users. They make it possible for users in foreign nations to accessibility content that might be restricted.
  • VPN Networks And Safety


    On home computer networks, info can easily be protected by encryption. Encryption indicates changing the data by having a scrambled strand of nonsense.
  • Why Might I Require VPN Software For?


    VPN services are extremely common and there are quite a couple different providers offering you various variations of them. Of course, this begs the question: Why would I even require one of these services?
  • VPN Services And Privacy


    VPN services provide a method to protect the privacy. The fascinating thing regarding exactly how these networks work is that the privacy security carries out additional than you may think initially.
  • 'Tis The Season For Facebook Identity Theft


    During this holiday season, is it better to give or receive? For identity thieves, it's neither; they prefer to take; and their latest hunting ground for victims is Facebook. Having surpassed 800 million users worldwide, there is plenty of targets on Facebook for crooks to go after. Knowing how they go about their schemes will help you be more informed about protecting yourself on Facebook.
  • Have You Looked Under The Virtual Mat?


    I wonder if Sony are aware of the Payment Card Industry Data Security Standard (PCI DSS) since they are very effectively stating their non-compliance.
  • PlayStation User? Kill The Cat!


    Today we hear confirmation about a breach of the Sony Playstation Network with the loss of millions of account names and personal details and potentially the loss of payment card details such as the payment card number and Expiry dates, but excluding the security code.
  • How Sophisticated Are The Cyber Thieves Who Breach Security?


    Why is it: whenever there is a breach of a company's security it is always attributed to the work of sophisticated cyber criminals? Is this because it really does take a sophisticated criminal to breach an environment these days or do victims prefer to characterise the cleverness of the criminal rather than the weakness of the security environment?
  • Transponder Keys - The Uses and Benefits


    Transponder keys becoming more and more technically advanced. The transponder keys purpose is to communicate with the lock. Auto theft can be reduced by using transponder keys and locks.

HTML Ready Article. Click on the "Copy" button to copy into your clipboard.




Firefox users please select/copy/paste as usual
Actions
Print This Article
Add To Favorites


Navigation
select
Home
select
Sign up
select
Login
select
Submit Articles
select
Submission Guidelines
select
learn more
select
Top Articles
select
About Us
select
Contact Us
select
Privacy Policy
select
RSS Feeds
   
Submit Your Articles To Our Other Article Directory
Morefreeinformation.com