Using SSL with IIS 5.0 - how does it work.

From: Tavish Muldoon (tmuldoon_at_spliced.com)
Date: 09/03/04


Date: 3 Sep 2004 11:31:20 -0700

I was thinking of using SSL on my webserver - and looked it up:

http://support.microsoft.com/default.aspx?scid=kb;en-us;299525

Would someone explain to me how a cerficate functions and what it is
doing behing the scenes. I assume all the data is encrypted then
decrypted at the client end - right?

Anyone coming to my site will be prompted for a certificate - correct?
 Or it is done automatically.

How greatly is speed affected/

When I generate a certificate - do I have to get it verified by some
third party - like Verisign?

SSL is of use only if my data is very secret and I do not want others
to see it. For general information - it probably does not matter -
correct?

Thanks,

Tmuld.



Relevant Pages

  • Re: IE6 ignoring HOSTS entries for HTTP
    ... I should have also mentioned that when I remove 'webserver' entry from ... I have written is because the SSL certificates' common name had to ... install the self-generated and signed certificate as trusted and not ...
    (microsoft.public.windowsxp.network_web)
  • Re: Name on Security Certificate is invalid
    ... >The problem is related to SSL in general. ... >header of an SSL request to a webserver being encrypted. ... This means that the server would then be ... able to pass back the certificate that matches the server that the client is ...
    (microsoft.public.inetserver.iis.security)
  • RE: CA-SSL in IIS
    ... It all depends on what you intend to do with your Certificate Authority ... support a large number of webservers or if you choose to use certificates ... for more than just webserver SSL. ...
    (Focus-Microsoft)
  • Name on Security Certificate is invalid
    ... The problem is related to SSL in general. ... header of an SSL request to a webserver being encrypted. ... So only the first certificate is seen and the webserver ... The first site ...
    (microsoft.public.inetserver.iis.security)
  • Re: Proposal for a new PKI model (At least I hope its new)
    ... > Then the world would have no problem trusting your domain level PKI ... coined the term "certificate manufacturing" to distinquish from actual ... it turns out that one of the reasons for the SSL server domain name ...
    (sci.crypt)

Quantcast