Archives

April 2004 (7)
March 2004 (12)
February 2004 (12)
January 2004 (22)
December 2003 (19)
November 2003 (16)
October 2003 (26)
September 2003 (18)
August 2003 (38)
July 2003 (80)
June 2003 (13)
May 2003 (24)
April 2003 (76)
March 2003 (75)
February 2003 (51)
January 2003 (73)

Category

Family (5)
FYI (18)
Games (2)
Geek (88)
Geographic (3)
Hacks (13)
Home (15)
Humor (54)
Ideas (20)
Ideaspace (15)
Local (15)
Metadata (10)
Microsoft (2)
MovableType (5)
Nitwits (66)
PKI (2)
Politics (22)
Quotes (3)
RDF (15)
RSS (4)
Security (3)
Semantic Web (13)
Site Info (13)
Social Networks (1)
Spam (9)
Sysadmin (1)
Tips (2)
Tivo (2)
TMFTOTHD (1)
To Do (1)
Unlisted (1)
Web (3)
Windows (1)

Local

« MetroBlogs »
DC metroblogs
beltway bloggers

Links


Assorted bits

Blogroll Me!
GeoURL
Listed on BlogShares




January 30, 2003

X509 Certs

What's an X509 Certificate?

An X509 Certificate allows you to exchange secure messages. The certificate itself is a file you get from a certificate authority.

If you want to send mail securely you can both sign and encrypt it with a certificate. If you sign a message the receiver can verify it's from you. If you encrypt the message only the receiver can open it.

  • If it's signed, it can be assured it's from you.
  • If it's encrypted no-one other than the receiver can open it.

How do I get an X509 Certificate?


If you want a certificate you can get a free personal one from Thawte. If your company sends a lot of secure messages they may have an organizational certificate. Check with your corporate IT personnel.

Can I send you signed mail?


In order to send me signed messages you'll have to send me your public key. In return I'll send you mine.

What's easier, PGP or X509?


For you're using Netscape, Outlook and Outlook Express it's probably easiest to use X509 certficates. You can use PGP buy you'll first need to download and install the software. There's also a free version of PGP known as GnuPG For regular e-mail I generally prefer using the X509 certificates. For sotware development I tend to use PGP, mainly because I know the tools better.

Ok, so why bother with this?

The short answer? For privacy and to avoid junk e-mail. SPAM is a blight on everyone's e-mail inbox. Using certified mail may allow you to better filter out the junk. If you've accepted someone's certificate then mail from them will be sure to get delivered. If it's junk mail it won't be signed and it certainly won't be a verifiable signature. But beyond spam, if you encrypt the messages you can be assured that nobody other than the intended parties will open or read it. You can also be sure the messages are really coming from that sender.


Perma  | TrackBack (0) | 04:52 PM  | xml

Navigation

Recent Entries

America and Europe: Vive la différence?
Server changes afoot
Diet behavior mod
Googling for sensitive info
Outlook 2003 and IMAP, a marriage made in Hell
Bike to Work Day, May 7th
Speakeasy rocks
Zippo USB?
When geographic data is nowhere 'near' correct
Local campaign contributions

User comments
Trackbacks

Contact

send me an e-mail E-mail
chat with me using MS messenger MSN Messenger
chat with me via AIM America Online
chat with me on ICQ ICQ
chat with me on Yahoo! Yahoo
Add my vCard to your electronic addressbook vCard
Friend of a Friend FoaF

Syndication

XML  RDF  CDF

Comments

XFML

Extra Stuff

foaf
vCard
pgp info
Linked In
Powered by
Movable Type 2.64