You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet

ECommerce-Guide News provides online business owners with information about new ecommerce products, ecommerce laws and taxes, trends in ecommerce and market research on how to run an eBay business.   News, reviews and practical solutions for your online business  
Home News & Trends Solutions Resources eBiz FAQ Selling on eBay Forums Video Products Glossary About
News Research Trends


Search
ECommerce-Guide

ECommerce Glossary
Enter a Term:

Free Newsletters
Small Business Tech Daily

Webopedia

You are in: ECommerce-Guide > News > Trends

ECommerce-Guide Essentials
eBiz FAQ
Everything you need to know to start your own successful e-business.

Selling on eBay
How to make money in the online marketplace.

PayPal Payments and More
What's new in secure payments for your online store.

Shopping Cart Software
Solutions to close, process and track your online sales.

ecommerce-guide news and trends

Growing a Tree Of Trust -- Part Three
By Mark Merkow, CCP, CISSP

January 28, 1999


More CA Requirements

CA systems should, as best as possible, implement the feature of Certificate Revocation Lists (CRLs) for unexpired, revoked certificates that keep them out of day-to-day operations. This function requires tight coupling with RA functions and is needed at the time certificates are shared or requested from the directory service. Many implementations do not support CRLs, but finding one that does will place you ahead of the game and adds security to the overall system. CRL update mechanisms should include an ability to alert the CA to a compromised or suspected compromise of a private key. The process should enable easy revocation and certificate replacement WITHOUT undue efforts. In the absence of this ability, the PKI may become next-to-worthless with the first private key compromise. Remember -- the PKI is based on trusting the security of private keys!

Last, you''ll want to make sure your CA provides sufficient training for all levels of personnel working within the PKI. This will include people who operate the RA functions, system developers, and end-users. You''ll also want help from the CA in developing internal certificate practices statements, operating procedures, key escrow and recovery procedures, and any other documentation to support the PKI projects development life cycle.

Go to page: Prev  1  2  3  4  5  6  7  8  Next  

Tools:
Add ecommerce-guide.com to your favorites
Add ecommerce-guide.com to your browser search box
IE 7 | Firefox 2.0 | Firefox 1.5.x
Receive news via our XML/RSS feed