Results 1 to 10 of 10
  1. #1
    Registered User rapidsslonline's Avatar
    Join Date
    Apr 2011
    Location
    FL, USA
    Posts
    183

    Securing Your Apache Web Server with a Thawte Digital Certificate

    By using a Thawte secure sockets layer (SSL) digital certificate, organizations are able to directly implement SSL/TLS properly on the Apache server platform. Many users of encryption fail in one or more areas of the implementation, leading to embarrassment and financial losses for web hosting companies, application service providers, e-commerce shops and other online organizations. For the consumers violated by these failures, the financial losses might not compare to the loss of trust and perceived threat of identity theft. Thawte provides a higher level of trust by doing extended validation in issuance of digital certificates. This is clearly visible to users through the Thawte Trusted Site Seal and green bar.

    The old saying that a chain is only as strong as its weakest link definitely applies in the use of SSL certificates. In fact, SSL is practically useless when deployed with self-signed certificates, mixed port HTTP sites, unencrypted cookies or when encrypting at rates that cannot withstand brute force attacks. Thawte serves any organization seeking reliable implementations of digital certificates on Apache. These certificates operate smoothly with all aspects of Apache, including virtual hosts, OpenSSL, ModSSL and Apache-SSL. By using Thawte SSL Certificate digital certificates with extended validation, visitors to an Apache host see that the certificate is valid and that "Thawte Inc [US]" provided the validation.

    Securing any Apache server is a simple process. The server manager should install OpenSSL and ModSSL, Apache-SSL or any other library services that creates the interface between Apache and OpenSSL. Using the "openssl" application from the command prompt, the server manager should generate the "private" key that is used to make the official certificate signing request (CSR) to Thawte.

    Common "openssl" command formats and options are available elsewhere; the server manager should not experiment with the CSR request process or "play around" with actual signings. There are multiple methods to test certificates, including creating self-signed test certificates that are signed by self-generated private keys. These methods for testing are fully compliant with X.509, but they have no purpose for authentication or encryption beyond the test and install process. Proper testing should occur in cases where the server managers or implementation team are inexperienced with the full process.

    To conclude the actual implementation on the Apache server, the certificate is downloaded and installed by pasting into the proper server location. Thawte recommends using the name www.domain.com.crt for consistency. If the server's "httpd.conf" is missing the SSL Certificate File and SSL Certificate Key File directives, the server manager or implementation team should add them appropriately.

    The implementation team should validate the success of the SSL implementation on the Apache server by connecting through multiple browsers and as many points of connection into the internet cloud as expected. Thawte recommends that troubleshooters begin with the Apache SSL FAQs at Thawte's website.

  2. #2
    Junior Member
    Join Date
    Dec 2012
    Posts
    14
    The self signed certificates make the SSL certificates become useless and there are HTTP sites that have unencrypted cookies and for these sites you will be able to check the rate of encryption.

  3. #3
    Junior Member
    Join Date
    Jan 2013
    Posts
    15
    The SSL certificates in the online sites are the most secure way to use the sites and gives you the way to use them to bring the whole process in a successful working condition.
    Last edited by stephendahlberg; 01-08-2013 at 04:14 AM.

  4. #4
    Registered User
    Join Date
    Jan 2013
    Posts
    12
    The chain is said to be as strong as its weakest part or link and so the SSL certificates that are useless with the self signed certificates will not work for the different sites or unencrypted cookies.

  5. #5
    Junior Member
    Join Date
    Feb 2013
    Posts
    18
    SSL certificates have many loopholes which make it ineffective. Some of the problems commonly associated with such certificates are unencrypted cookies, self signed certificates, mixed port HTTP and fierce attack while encrypting.

  6. #6
    Junior Member
    Join Date
    May 2013
    Posts
    13
    People say that chain is used to be very strongest as well as the weakest link or part and the SSL certificates which are useless with self-signed certificates.

  7. #7
    Registered User
    Join Date
    Jun 2013
    Posts
    12
    Even in the use of those SSL certificates, it is apparent that we could find some weaknesses as well. We have to see these at the earliest possible time these days.

  8. #8
    Junior Member
    Join Date
    Jun 2013
    Posts
    14
    Various users of the encryption fail in various areas of implementation, leads to financial losses and embarrassment for many web hosting organizations and providers of application service.

  9. #9
    Registered User
    Join Date
    Jul 2013
    Posts
    14
    Many customers of the encryption fail in single or many more areas of implementation, leads to financial losses and embarrassment for some website hosting companies.

  10. #10

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

  Find Web Hosting      
  Shared Web Hosting UNIX & Linux Web Hosting Windows Web Hosting Adult Web Hosting
  ASP ASP.NET Web Hosting Reseller Web Hosting VPS Web Hosting Managed Web Hosting
  Cloud Web Hosting Dedicated Server E-commerce Web Hosting Cheap Web Hosting


Premium Partners:


Visit forums.thewebhostbiz.com: to discuss the web hosting business, buy and sell websites and domain names, and discuss current web hosting tools and software.