[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-developers] SSL certificates for multiple domains
- Subject: Re: [cobalt-developers] SSL certificates for multiple domains
- From: Jeff Lasman <jblists@xxxxxxxxxxxxx>
- Date: Thu Aug 9 05:32:15 2001
- Organization: nobaloney.net
- List-id: Discussion Forum for developers on Sun Cobalt Networks products <cobalt-developers.list.cobalt.com>
Adrian Parker wrote:
> I'd assume then when a browser goes to a given site, the server hands it the
> encrypted cert? Does this mean the encrypted cert is further concatenated
> with a timestop (etc) to ensure that encrypted can't be handed out by other
> servers in turn and therefore forged?
Now you've got me on the details <wry grin>; the cert is limited to use
on the IP# and the domain name. Some certs are also limited by the
physical machine. And the entire thing is encrypted from beginning to
end; nothing's running over the net in clear-text except the IP# address
of the destination.
> Not my department. If I hadn't of been working on a few scripts in the same
> directory the other day, I wouldn't have known we even sold them.
You're right, of course. Sorry about that.
Jeff
--
Jeff Lasman <jblists@xxxxxxxxxxxxx>
nobaloney.net
P. O. Box 52672, Riverside, CA 92517
voice: (909) 787-8589 * fax: (909) 782-0205