Re: WAYS OF AUTHENICATION - open discussion
| From: | Thomas Deliduka | Date: | Wed, 08 Nov 2000 16:05:29 +0000 |
| Subject: | Re: WAYS OF AUTHENICATION - open discussion | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-24335@lists.php.net to get a copy of this message | ||
On 11/8/00 10:26 AM this was written:
> yes, that part goes to a bit different discussion. And if servers are
> insecure then your web based superduper authentication systems have no
> use.
I agree.
>> I don't know, best security is put it behind an ssl layer. My methodology
>> I described before is used in a control panel that's behind a secure
>> server.
>
> I could use some more information about it. maybe some more words from
> you?
Not sure what else to say. You can get a Secure Cert depending on several
factors:
1. Your department approves it.
2. Your hosting company offers them with the site (if you host through a
company).
3. You are a legitimate business.
You can get them from www.thawte.com or whoever your hosting company
recommends. You signup for it by first creating a request code on the
server and then submit it to the company like Verisign or Thawte. Then you
have to prove that you're a real company like you say you are by sending in
Articles of Incorporation and other junk. Within a few days, you've got a
Cert.
They give you a code, you install it and call your site with https instead
of http. the browser does the rest.
--
Thomas Deliduka
IT Manager
-------------------------
New Eve Media
The Solution To Your Internet Angst
http://www.neweve.com/