Find White Papers
Home
About Us
List Your Papers
    
> thawte > Extended Validation SSL Certificates

Extended Validation SSL Certificates

White Paper Published By: thawte

Extended Validation SSL delivers the acknowledged industry standard for the highest level of online identity assurance processes for SSL certificate issuance. Find out how the EV standard increases the visibility of authentication status through the use of a green address bar in the latest high security web browsers.



Tags : 
thawte, ssl, secure socket, authentication, identity management, identification

thawte
Published:  Aug 27, 2008
Type:  White Paper
Length:  7 pages

TM TM
Extended Validation SSL CertificatesA NEW STANDARD TO INSPIRE TRUST, improveconfidence and increase sales ...
INDEX
1. Extended Validation (EV) SSL Certificates - solving a trust problem
2. Traditional SSL - not the assurance it used to be
3. EV SSL Standard - more trustworthy, more visible
4. Green - immediately identifiable interface improvement
5. IE7 Settings - real-time validity checks
6. EV - authenticity, integrity, validity
7. EV UpgraderT - Windows XP client benefits
8. SSL Web Server Certificate with EV - a trusted thawte solutionTM TM
1. Extended Validation SSL Certificates - solving a trust problem
Many consumers don't trust web site safety enough to complete an e-commerce transaction. The frequency ofmalicious web schemes such as phishing and pharming creates an environment of fear and reticence. Gartnerrecently reported that in 2006 41.2% of online adults in the U.S definitely received Phishing emails, 46% changedtheir purchasing and online behavior as a direct result of security concerns and 10% reduced their online spendingby at least 50%. As a result nearly $2 Billion in e-commerce sales were lost due to user concern over security.*Online commerce may still be growing but there are a significant number of people opting out or reducing theirspending due to security concerns. If you are a web business that depends on consumers trusting you enough toshare their financial, personal or other sensitive data this is an alarming trend. Identity authentication now takescenter stage in the fight to shore up consumer confidence in e-commerce.
To combat this problem, leading web browser developers and SSL Certification Authorities (CAs), including thawte,joined forces to create a new standard for web site identity authentication. After more than a year of effort, theCA/Browser Forum introduced the new Extended Validation (EV) SSL Certificate. This new standard is the mostsignificant advancement for the World Wide Web's secure backbone since SSL Certificates were first introducedover a decade ago.
Extended Validation SSL Certificates offer web sites a better method for assuring their visitors of their legitimateidentity. Browser support for the enhanced features of Extended Validation SSL Certificates began with Microsoft®Windows Internet Explorer 7 in early 2007 and other browsers, such as Firefox and Opera, have announced theirintentions to follow in short order.
2. Traditional SSL - not the assurance it used to be
SSL Certificates were created to validate the genuineness of a web site because it is so easy to counterfeit abusiness on the web. In 1995, when they were invented, a standard SSL Certificate provided adequate protectionfor consumers. Times have changed; web scams became more sophisticated and these traditional certificatesmay no longer be adequate. A member of the general public can easily forget to look for the small lock icon inthe browser window and they won't necessarily recognize a fraudulent use of an SSL Certificate. Sophisticatedweb scammers easily fool some less stringent CA identity authentication practices and some web fraud sites simplyuse self-signed SSL Certificates that provide no identity authentication at all. The general public often cannotrecognize when they are presented with one of these questionable certificates. This is one reason why spoofingschemes such as phishing and pharming have become so prevalent and successful.TM TM
3. EV SSL Standard - more trustworthy, more visible
The Extended Validation SSL standard helps solve both the problem of low SSL protection visibility and lowassurance of a site's genuine identity. The CA/Browser Forum, comprised of over twenty browser manufacturers,CAs, and WebTrust auditors along with the American Bar Association Information Security Committee (ABA-ISC),worked for more than a year to create the first inception of the EV authentication process. The CA/Browser Forumcontinues to develop the EV standard and guidelines in order to improve Internet security and combat online fraud.The EV guidelines describe a set of standardized best practices that must be followed in order for an SSL Certificateto meet the requirements for Extended Validation status. Any CA who wants to issue EV SSL Certificates mustfirst pass an independent WebTrust audit confirming their use of the EV identity authentication standard p... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search