Drill down deep enough and secure sockets layer (SSL) encryption, with its public key infrastructure (PKI) at the core, will strike most as a complex, intricate technology.
Less cryptic is that the more effort a vendor puts in to making a product easier to use, the more attractive that product becomes to users. Toronto-based Soltrus Inc. recently announced four significant upgrades to its SSL security services, or Managed PKI for SSL platforms.
PKI for SSL may not be the sexiest technology around, but since it’s an intrinsic feature of a trusted e-commerce Web site, SSL certificates are no trifle for large enterprises. In an e-commerce transaction, bank account or credit card numbers are encrypted so that no one who’s spoofing or spying on the Internet can capture that information. Sensitive data sent to a Web server needs to be encrypted.
SSL enables a domain name attached to a server (a Web site) to speak to the browser on a laptop or PC in a unique encrypted session, using PKI technology. SSL uses PKI to exchange public and private encrypted keys. These keys require a certificate authority for authentication, which is where Soltrus steps in with its SSL certificates from Verisign Inc. and Managed PKI for SSL service.
“When you type in www.bmo.com or cibc.com, your browser communicates with the domain server and asks for a certificate, embedded in the Web page,” says Anthony Santilli, vice-president of marketing for Soltrus, a Canadian affiliate of Mountain View, Calif.-based Verisign.
“If it is a trusted certificate, a secure SSL session will be set up. Verisign acts as a password agency that digitally stamps the certificates to authorize trust in the authenticity of the encrypted session.”
Once the certificate has been issued, the client downloads SSL software to run on their servers to enable the encryption.
Updates announced last month include two-year validity for the SSL certificates, an improved control panel for the Web-based management services, the ability to revoke and reissue the same certificate to a domain name, as well as discounted rates for bulk buying.
Certificates are now simpler to manage and the service is more cost effective, says Rashid Niazi, a network analyst for Itergy Consulting Inc., a Montreal-based firm that specializes in Active Directory infrastructure.
Niazi says he’s able to manage certificates centrally, instead of everyone going out and making their own purchase orders.

















icon.














