Digital certificates and Public key cryptography symbiosis
After you have obtained information on what is Public Key Cryptography and Digital certificates lets describe how they work in conjunction to provide details security for online payers.
When a person wants to make a payment it requests the Public Key of the receiver server. (Ince, 2004). This is returned to them together with digital certificate and identity of the payment receiver. Some of the browser that are installed or updated on your computer are already programmed with the well-known public keys of trusted certified authorities (Callaway, 2001). Using the digital certificate provided by the e-commerce application, your browser is able to determine which certificate authority has signed the certificate. This allow customers to tell the true identity of the company and view their public key. Such method allows the user to attach positive identification to a public key before encrypting data (such as credit card numbers).
All secure servers on the net require digital certificate in order to be trusted. But what about general users that just want to make a purchase on the Internet? An individual can have a personal identification certificate that is called client certificate. Nevertheless, in order to make things less complicated for general users most e-commerce applications do not require general customer to have a digital certificate, when using the application. Most of the times user’s identity is proved by verifying username from the server database and name on the credit card used to make payment.
Clients certificates are still used when a high level of security is necessary. For example, in order to use e-banking bank’s server will request a client’s digital certificate. By doing so both the client and the server know the identity of each other.
Sun Oct 12, 2014 5:48 pm
shelly
Joined: 07 Nov 2013 Posts: 58
I was really curious to know the complete process of how digital certificates actually works and how the identity of a person is verified. Thanks to you for throwing some light in this regard.
electronic signature
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum