Digital Certificates
Digital certificates are data files used to establish the identity of people and electronic assets on the Internet. They allow for secure, encrypted online communication and are often used to protect online transactions.
Computerworld - Digital certificates are issued by a trusted third party known as a certification authority (CA). The CA validates the identity of a certificate holder and "signs" the certificate to attest that it hasn't been forged or altered in any way.
| New Uses For Digital Certificates
Digital certificates are now being used to provide security and validation for wireless connections, and hardware manufacturers are one of the latest groups to use them. Last month, VeriSign Inc. in Mountain View, Calif., announced its Cable Modem Authentication Services, which allow hardware manufacturers to embed digital certificates into cable modems to help prevent the pirating of broadband services through device cloning.
Using VeriSign software, hardware makers can generate cryptographic keys and corresponding digital certificates that manufacturers or cable service providers can use to automatically identify individual modems. "It appears that this is the very first time that certificates are being used at the point of manufacture in electronics products, where they are burned right into the read-only memory of [a] cable modem," says analyst Michael Harris, president of Kinetic Strategies Inc. in Phoenix.
According to VeriSign, the Data Over Cable System Interface Specification standard, which calls for the embedding of digital certificates in cable modems, sets the stage for next-generation broadband services such as pay-per-view, digital rights management and online software delivery and ensures interoperability among products from cable modem manufacturers and operators.
"This 'last-mile' authentication not only protects the value of existing content and services but also positions cable system operators to bring a broad new range of content, applications and value-added services to market," says Stratton Sclavos, president and CEO of VeriSign.
| |||
When a certificate is digitally signed by a CA, its owner can use it as an electronic passport to prove his identity. It can be presented to Web sites, networks or individuals that require secure access.
Identifying information embedded in the certificate includes the holder's name and e-mail address, the name of the CA, a serial number and any activation or expiration data for the certificate. When a user's identity is verified by the CA, the certificate uses the holder's public encryption key to protect this data.
Public keys are also employed by certificates that a Web server uses to confirm the authenticity of a Web site for a user's browser. When a user wants to send confidential information to a Web server, such as a credit-card number for an online transaction, the browser will access the public key in the server's digital certificate to verify its identity.



- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- CRM Thought Leadership Booklet
- Read this white paper, created in collaboration with Frost & Sullivan, to see how a customer relationship management (CRM) solution can help you...
- Oracle's Optimized Solution for CRM - A Business Case for Secured Siebel CRM on Oracle's SPARC T-Series
- This white paper explains how deploying SPARC T-Series servers, which can execute cryptography at full CPU speed, as the cornerstone of your secure...
- Overcome Top 7 Admin Challenges of Active Directory
- As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable,...
- Insiders Can Ruin Your Company. Take Action.
- Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in...
- Top Solutions and Tools to Prevent Devastating Malware
- Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring... All CRM White Papers
- Customer Lifetime Value for IT
- Watch the video to learn how IBM SPSS Predictive Analytics enables marketers while reducing the burden on IT.
- Optimizing Networks for the Cloud
- Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
- Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
- Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
- Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
- Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
- Customer Spotlight: How IPC The Hospitalist Company Implemented Oracle on VMware
- Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn... All CRM Webcasts