[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-developers] SSL certificates for multiple domains



Adrian Parker wrote:

> I'd assume then when a browser goes to a given site, the server hands it the
> encrypted cert?  Does this mean the encrypted cert is further concatenated
> with a timestop (etc) to ensure that encrypted can't be handed out by other
> servers in turn and therefore forged?

Now you've got me on the details <wry grin>; the cert is limited to use
on the IP# and the domain name.  Some certs are also limited by the
physical machine.  And the entire thing is encrypted from beginning to
end; nothing's running over the net in clear-text except the IP# address
of the destination.

> Not my department.  If I hadn't of been working on a few scripts in the same
> directory the other day, I wouldn't have known we even sold them.

You're right, of course.  Sorry about that.

Jeff
-- 
Jeff Lasman <jblists@xxxxxxxxxxxxx>
nobaloney.net
P. O. Box 52672, Riverside, CA  92517
voice: (909) 787-8589  *  fax: (909) 782-0205