• RSS
  • Twitter
  • FaceBook

Security Forums

Log in

FAQ | Search | Usergroups | Profile | Register | RSS | Posting Guidelines | Recent Posts

php website - digital certification authentification

Users browsing this topic:0 Security Fans, 0 Stealth Security Fans
Registered Security Fans: None
Post new topic   Reply to topic   Printer-friendly version    Networking/Security Forums Index -> Programming and More

View previous topic :: View next topic  
Author Message
matheuzzy
Just Arrived
Just Arrived


Joined: 18 May 2009
Posts: 0


Offline

PostPosted: Mon May 18, 2009 2:08 am    Post subject: php website - digital certification authentification Reply with quote

Hello,

I have a website on Ubuntu, xampp (lampp)

and i want to secure a part of this site using digital ceritication for my users. My question is how to manage the user certifications? how to store them(do I need to store them)..? how I now that a ceritfied user is one of my users? his certification must be signed with my server key?

..pls give me some directions
Back to top
View user's profile Send private message Yahoo Messenger
Fire Ant
Trusted SF Member
Trusted SF Member


Joined: 27 Jun 2008
Posts: 3
Location: London

Offline

PostPosted: Mon May 18, 2009 9:19 am    Post subject: Reply with quote

Quote:
i want to secure a part of this site using digital ceritication for my users.
Why? From the tone of your post it seems to you want to do something without knowing anything about it. It also seems you want to do for some other reason than security e.g. cos you want to.

Quote:
My question is how to manage the user certifications?
This is the eternal question with PKI.

Quote:
how to store them(do I need to store them)..?
How do you want to store them? You need a system which will do all this for you.

Your questions should be
"How do the users get their certificates?"
"How do they present them to the website?"

Quote:
how I now that a ceritfied user is one of my users?
Ahhh, another PKI question, this is too broad to answer here. I could talk for about 4 hours on this.

Quote:
his certification must be signed with my server key?
You can run a PKI if you like but from your questions I wouldn't recommend it.

http://lmgtfy.com/?q=web+authentication+certificates+apache

Matt_s
Back to top
View user's profile Send private message
Display posts from previous:   

Post new topic   Reply to topic   Printer-friendly version    Networking/Security Forums Index -> Programming and More All times are GMT + 2 Hours
Page 1 of 1


 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum

Community Area

Log in | Register