PKI: SSL, S/MIME, Certificates, & Signatures
1st Annual PKI Workshop
 
Ankit Fadia
  • Kerberos Torn Apart
    http://www.ankitfadia.com/kerberos.htm
  • SSL Torn Apart
    http://www.ankitfadia.com/ssl.htm
  •  
    ASN.1 Homepage
     
    ASN.1 Information Site
     
    A Brief Comparison of Email Encryption Protocols
     
    Carl Ellison
  • Certification Infrastructure Needs For Electronic Commerce & Personal Use
    http://world.std.com/~cme/nist-7-24/
  • Home Page
    http://world.std.com/~cme/
  • Misuse of the Word Trust
    http://world.std.com/~cme/html/trust.html
  • SPKI/SDSI & the Web of Trust (PGP vs. X.509 Certificates)
    http://world.std.com/~cme/html/web.html
  • SPKI/SDSI Certificates
    http://world.std.com/~cme/html/spki.html
  •  
    Certificate Management & Installation with OpenSSL
     
    CERT - Using PGP to Verify Digital Signatures
     
    CESG: Secure Messaging & PKI Interoperability
     
    Cisco - Kerberos White Paper
     
    Counterpane
  • Risks of PKI: Electronic Commerce
    http://www.schneier.com/essay-insiderisks5.html
  • Risks of PKI: Secure E-mail
    http://www.schneier.com/essay-insiderisks4.html
  • Ten Risks of PKI
    http://www.schneier.com/paper-pki.html
    or http://www.schneier.com/paper-pki-ft.txt
  •  
    CREN - Certificate Authority Services
     
    Comodo Group
     
    CyberWatch-911 - How to Check Your Browser's Cipher Strength
     
    Dartmouth
  • PKI Lab
    http://www.dartmouth.edu/~pkilab/
  • Learning About PKI
    http://www.dartmouth.edu/~pkilab/pages/Learning_About_PKI.html
  • Using Public Key Certificates
    http://www.dartmouth.edu/~pkilab/pages/Using_PKI.html
  • Using S/MIME E-mail
    http://www.dartmouth.edu/~pkilab/pages/Using_SMIME_e-mail.html
  • Using Web Resources with Public Key CErtificates
    http://www.dartmouth.edu/~pkilab/pages/Using_Web_Resources.html
  • What is PKI
    http://www.dartmouth.edu/~pkilab/pages/PKI_Background.html
  •  
    Defective Sign & Encrypt in S/MIME, PKCS#7, MOSS, PEM, PGP, & XML
     
    Digital Certificates (Jerilyn Waters)
     
    Digital Certificates & Encryption
     
    Digital Certificates: Frequently Asked Questions
     
    Digital Signature Guidelines: A Tutorial
     
    Digital Signature Law Survey
     
    Digital Trust - Windows Mail with X.509
     
    Dr S N Henson's Home Page
     
    Electronic Signatures & Internet Security: An Explanation & Practical How-To Notes
     
    Encrypting with Stunnel: How to Encrypt Arbitrary TCP connections Inside SSL
     
    Encryption, Authentication & Public Key Infrastructure
     
    Entrust
  • Home Page
    http://www.entrust.com/
  • Documentation
    http://www.entrust.com/resources/whitepapers.htm
  • Internet Security 101
    http://www.entrust.com/security101/index.htm
  • An Introduction to Cryptography & Digital Signatures
    http://www.entrust.com/resources/descriptions/1.htm
  • Resources
    http://www.entrust.com/resources/
  • Trust Management in the Public-Key Infrastructure
    http://www.entrust.com/resources/descriptions/63.htm
  • Understanding Digital Certificates & Secure Sockets Layer (SSL)
    http://www.entrust.com/resources/descriptions/189.htm
  •  
    Fabian Rodriquez - Thawte X.509 Certificates/OpenPGP Encryption
     
    Federal PKI Policy Authority
     
    Finance Outlook - Digital Signatures, Digital Certificates, & PKI
     
    Fortify.net
  • Fortify for Netscape ReadMe
    http://www.fortify.net/README_main.html
  • SSL Check
    https://www.fortify.net/sslcheck.html
  •  
    Fraudulent Versign Certificate
     
    The Free Cert Project
     
    GeoTrust
     
    GlobalSign
  • About Digital Certificates
    http://support.globalsign.net/en/...
  • About Digital Signatures
    http://support.globalsign.net/en/...
  • Home Page
    http://www.globalsign.net/
  •  
    Global Trust Register
     
    IETF
  • Kerberized Internet Negotiation of Keys (kink) Working Group
    http://www.ietf.org/html.charters/kink-charter.html
  • Kerberos WG (krb-wg) Working Group
    http://www.ietf.org/html.charters/krb-wg-charter.html
  • Public-Key Infrastructure (X.509) (pkix) Working Group
    http://www.ietf.org/html.charters/pkix-charter.html
    or http://www.imc.org/ietf-pkix/index.html
  • S-MIME Mail Security (smime) Working Group
    http://www.ietf.org/html.charters/smime-charter.html
  • Transport Layer Security (tls) Working Group
    http://www.ietf.org/html.charters/tls-charter.html
  • XML Digital Signatures (xmldsig) Working Group
    http://www.ietf.org/html.charters/xmldsig-charter.html
  •  
    Information Security Magazine - PKI Policy Pitfalls
     
    Intelligent Enterprise Magazine
  • The Burden of Proof
    http://www.intelligententerprise.com/...
  • The Weakest Links
    http://www.intelligententerprise.com/...
  •  
    Internet2 HEPKI-TAG
     
    Internet2 HEPKI-TAG PKI Development Website
     
    Internet2 PKI Labs
     
    Internet Mail Consortium - S/MIME & OpenPGP
     
    Introducing SSL and Certificates
     
    Introducing SSL and Certificates Using SSLeay
     
    ITU-T Publications - X.509
     
    ITU-T Recommendation - X.509 (08-1997)
     
    KPMG - Public Key Infrastructure Services
     
    MCG
  • Overview of Certification Systems
    http://www.mcg.org.br/cert.htm
    or http://www.mcg.org.br/certover.pdf (PDF document)
  • Publications
    http://mcg.org.br/papers.htm
  • X.509 Certificates: A Readable Unabridged Inside View
    http://www.mcg.org.br/x509cert.htm
  •  
    Microsoft
  • Authenticode for Internet Explorer 4.0
    http://msdn.microsoft.com/downloads/...
  • Authenticode for Internet Explorer 5.0
    http://msdn.microsoft.com/downloads/...
  • Certificate Autoenrollment in Windows XP
    http://www.microsoft.com/windowsxp/...
  • Certificates Overview
    http://www.microsoft.com/technet/prodtechnol/...
  • Cipher Strength Appears as 0-Bit in Internet Explorer
    http://support.microsoft.com/default.aspx?scid=KB;en-us;q261328
  • Creating, Viewing, & Managing Certificates
    http://msdn.microsoft.com/library/en-us/security/...
  • Cryptographic Service Provider Developer's Kit
    http://msdn.microsoft.com/downloads/sample.asp?...
  • Cryptography Tools
    http://msdn.microsoft.com/library/en-us/security/...
  • Cryptography & PKI Basics
    http://www.microsoft.com/windows2000/techinfo/...
    or http://www.microsoft.com/technet/prodtechnol/...
  • Description of Digital Certificates
    http://support.microsoft.com/default.aspx?scid=kb;en-us;Q195724
  • How To Secure XML Web Services with SSL
    http://support.microsoft.com/view/tn.asp?kb=307267
  • Internet Explorer 4 Resource Guide - Digital Certificates
    http://www.microsoft.com/technet/archive/ie/...
  • Internet Explorer 5 Resource Guide - Digital Certificates
    http://www.microsoft.com/technet/prodtechnol/...
    or http://www.microsoft.com/technet/prodtechnol/...
  • Internet Explorer 6 Resource Guide - Digital Certificates
    http://www.microsoft.com/technet/prodtechnol/ie/...
  • An Introduction to the Windows 2000 Public Key Infrastructure
    http://www.microsoft.com/windows2000/techinfo/...
  • PKI Enhancements in Windows XP Professional & Windows .NET Server
    http://www.microsoft.com/windowsxp/pro/..
  • PKI Enhancements in Windows XP Professional & Windows .NET Server
    http://www.microsoft.com/windowsxp/pro/...
  • Secure Your Messages on the Internet
    http://office.microsoft.com/assistance/9798/Olsecmai.aspx
  • Security with Certificates
    http://www.microsoft.com/technet/prodtechnol/...
  • Step-by-Step Guide to Advanced Certificate Management
    http://www.microsoft.com/technet/prodtechnol/...
  • Step-by-Step Guide to End User Certificate Management
    http://www.microsoft.com/technet/prodtechnol/...
  • Step-by-Step Guide to Public Key-Based Client Authentication in Internet Explorer
    http://www.microsoft.com/windows2000/techinfo/...
  • Step-by-Step Guide to Public Key Features in Outlook Express 5.0 & above
    http://www.microsoft.com/windows2000/techinfo/...
  • Step-by-Step Guide to Public Key Features of Outlook 2000
    http://www.microsoft.com/windows2000/techinfo/...
  • Understanding Certificates
    http://www.microsoft.com/technet/prodtechnol/...
  • Using Digital Certificates in Internet Explorer
    http://www.microsoft.com/windows/ie/using/howto/...
  • Windows 2000 Certificate Services
    http://www.microsoft.com/windows2000/techinfo/...
  • Windows 2000 Public Key Infrastructure
    http://www.microsoft.com/windows2000/techinfo/...
  • Windows 2000 Server Resource Kit - Certificate Services & Public Key Infrastructure
    http://www.microsoft.com/technet/prodtechnol/...
  • Windows 2000 Server Resource Kit - Choosing Security Solutions That Use Public Key Technology
    http://www.microsoft.com/technet/prodtechnol/...
  • Windows 2000 Server Resource Kit - Cryptography for Network & Information Security
    http://www.microsoft.com/technet/prodtechnol/...
  •  
    Microsoft - Kerberos, Authentication & Access Control
     
    Mind Products - Digital Certificates
     
    Mozilla.org - Network Security Services (NSS)
     
    NetCraft
  • An Example Certificate
    http://www.netcraft.co.uk/ssl/certnote.html
  • SSL Server Glossary
    http://www.netcraft.co.uk/ssl/glossary.html
  • What Is This SSL Site Running?
    http://www.netcraft.com/sslwhats/
  •  
    Net@EDU PKI Working Group
     
    Netscape
  • Applying Communicator's Security Features
    http://developer.netscape.com/docs/...
  • Certificate Authority Services
    https://certs.netscape.com/client.html
  • Certificate Specifications
    http://wp.netscape.com/eng/security/...
  • Enterprise Security (PKI)
    http://verisign.netscape.com/security/...
  • Implementing PKI
    http://verisign.netscape.com/security/pki/...l
  • Introduction to SSL
    http://developer.netscape.com/docs/manuals/...
  • Object Signing Resources
    http://developer.netscape.com/software/...
  • Object Signing Tools
    http://developer.netscape.com/software/...
  • Personal Certificates/font>
    http://wp.netscape.com/security/techbriefs/...
  • Secure Sockets Layer (SSL)
    http://wp.netscape.com/security/...
  • Security Center
    http://wp.netscape.com/security/index.html
  • Signing Your Cokde
    http://verisign.netscape.com/security/...
  • Tech Briefs
    http://wp.netscape.com/security/...
  • The SSL Protocol Version 3.0
    http://wp.netscape.com/eng/ssl3/...
  • Understanding PKI
    http://verisign.netscape.com/security/...
  • Understanding Security & Privacy
    http://wp.netscape.com/security/...
  •  
    Network Computing - Certificate Revocation: When Not To Trust
     
    Network Computing - Tracking Digital Certificates
     
    Network Computing - What's 'E' About Signatures?
     
    Network Magazine
  • Email Security
    http://www.networkmagazine.com/article/...
  • SSL & S-HTTP
    http://www.networkmagazine.com/article/...
  •  
    NHSE - X.509 Certificates & Certification Authorities
     
    NIST
  • Federal Agency Use of Public Key Technology for Digital Signatures & Authentication
    http://csrc.nist.gov/publications/nistpubs/...
    or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
  • Guidelines On Electronic Mail Security
    http://csrc.nist.gov/publications/nistpubs/ ...
    or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
  • Introduction to Public Key Technology & the Federal PKI Infrastructure
    http://csrc.nist.gov/publications/nistpubs/...
    or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
  • PKI Program
    http://csrc.nist.gov/pki/
  • PKI Related Links
    http://csrc.nist.gov/pki/twg/links.htm
  • PKI Slide Show
    http://csrc.nist.gov/nissc/1999/program/isso/sld001.htm
  • S-MIME Activities
    http://csrc.nist.gov/pki/smime/welcome.htm
  •  
    NSA - Guide to the Secure Configuration & Administration of Microsoft Windows 2000 Certificate Services
     
    NSA - Guide to Using DoD PKI Certificates in Outlook 2000
     
    NWFusion - The ABCs of PKI
     
    OpenCA PKI Development Project
     
    The Open-source PKI Book
     
    OpenSSL
     
    Peter Gutmann
  • Authenticode
    http://www.cs.auckland.ac.nz/~pgut001/pubs/authenticode.txt
  • Secure Internet-Based Electronic Commerce:
    The View from Outside the United States
    http://www.cs.auckland.ac.nz/~pgut001/pubs/icommerce.pdf
  • X.509 Style Guide
    http://www.cs.auckland.ac.nz/~pgut001/pubs/x509guide.txt
  •  
    Phrack Inc: "Haaaang on snoopy, snoopy hang on (SSL for fun & profit)"
     
    PKI Forum
     
    PKI: An Insider's View
     
    The PKI Challenge
     
    PKI Law
     
    PKI Law - 25 Steps to the Successful Implementation of a Corporate Public Key Infrastructure
     
    The PKI Page
     
    Public Key Infrastructure Project
     
    Recognition of Your SSL Certificate
     
    Ridge Cook - Encryption & PKI
     
    RSA Security
  • Home Page
    http://www.rsasecurity.com/
  • Planet SSL
    http://www.rsasecurity.com/standards/ssl/index.html
  • Public Key Cryptography Standards (PKCS)
    http://www.rsasecurity.com/rsalabs/pkcs/index.html
  • RSA Labs CryptoBytes
    http://www.rsasecurity.com/rsalabs/cryptobytes/index.html
  • RSA Labs Cryptography FAQ
    http://www.rsasecurity.com/rsalabs/faq/
  • S/MIME Central
    http://www.rsasecurity.com/standards/smime/
  • S/MIME FAQ
    http://www.rsasecurity.com/standards/smime/faq.html
  • SSL Basics for Internet Users
    http://www.rsasecurity.com/standards/ssl/basics.html
  • White Papers
    http://www.rsasecurity.com/solutions/...
  •  
    SANS Institute - Digital Certificates
     
    SANS Institute - Encryption & VPNs Popular!
     
    SDSI-SPKI Resources
     
    Securing IT Resources with Digital Certificates & LDAP
     
    Securing Windows 2000 Certificate Services
     
    SecurityFocus.com - Remote Desktop Management Solution for Microsoft
     
    Server Certificate Registration
     
    Slackers - Digital Certificates
     
    S/MIME & PGP Products Interoperability
     
    S/MIME - the Reality of Interoperability
     
    Spyrus
     
    SSL Certificates HOWTO
     
    SSLeay Certificate Cookbook
     
    SSLeay & SSLapps FAQ
     
    SSL Project
     
    SSLreview
     
    SSL-Talk List FAQ
     
    Sun - Public Key Infrastructure Overview
     
    Thawte
  • Cryptography FAQs
    http://www.thawte.com/html/...
  • Full Strength Crypto: SGC SuperCerts
    http://www.thawte.com/html/...
  • Home Page
    http://www.thawte.com/
  • Personal Certification Home
    https://www.thawte.com/cgi/personal/contents.exe
  • Personal Email Certificates
    http://www.thawte.com/html/...
  • Personal Certificate FAQ's
    http://www.thawte.com/html/C...
  • Repository
    http://www.thawte.com/repository/index.html
  • Root Certificates
    http://www.thawte.com/html/S...
  • Root Certificate Trust Mappings
    http://www.thawte.com/html/SUPPORT/...
    or http://www.thawte.com/html/...
    or http://www.thawte.com/html/...
  • Root & CRL Database
    https://www.thawte.com/cgi/lifecycle/roots.exe
  • Support Centre
    http://www.thawte.com/html/...
  •  
    TrustToolbar Secure Email Certificates
    (Comodo Group)
     
    UC Berkeley
  • About Web Browser Security
    http://wssg.berkeley.edu/public/projects/...
  • Email Privacy, Integrity, & Authenticity
    http://wssg.berkeley.edu/public/projects/...
  • Server Certificates & SSL: What, Why, and Issues
    http://wssg.berkeley.edu/public/projects/...
  • Web Browser Security
    http://wssg.berkeley.edu/public/projects/...
  •  
    UC San Diego
  • Converting Certificates
    http://security.sdsc.edu/help/pki/convert.shtml
  • Kerberos Help & Information
    http://security.sdsc.edu/help/kerberos.shtml
  • PKI/GSI: NPACI's Public Key Infrastructure/Grid Security Infrastructure
    http://www.npaci.edu/online/v4.5/pki-gsi.html
  • What is PKI?
    http://security.sdsc.edu/help/pki/description.shtml
  •  
    The University of Wisconsin (Madison) - PKI Lab
     
    The University of Wisconsin (Madison) - Using X.509 Certificates for Authentication
     
    Verisign
  • About Digital IDs
    https://digitalid.verisign.com/client/help/aboutdid.htm
  • Browser Check
    http://verisign.netscape.com/advisor/index.html
  • Digital IDs: The New Advantage
    http://www.verisign.com/clientauth/whitepaper.html
  • Home Page
    http://www.verisign.com/
  • Implementing Web Site Client Authentication Using Digital IDs
    http://www.verisign.com/clientauth/kit/details.html
  • Introduction to Cryptography
    https://digitalid.verisign.com/client/help/introCrypto.htm
    or http://www.verisign.com/repository/crptintr.html
  • Introduction to Client Digital IDs
    http://www.verisign.com/repository/brwidint.html
  • Public-Key Infrastructure (PKI)
    http://www.verisign.com/whitepaper/...
  • Repository
    http://www.verisign.com/repository/index.html
  •  
    Wild ID - Totally Free Digital ID
     
    X.509 Certificates
    (Dr. Dobb's Journal)
     
    X.509 Certificates & Certificate Revocation Lists (CRLs)
     
    ZDNet
  • Digital Signatures a Security Threat?
    http://zdnet.com.com/2100-11-524184.html?legacy=zdnn
  • Digital Signatures A Threat To Privacy?
    http://zdnet.com.com/2100-11-519795.html?legacy=zdnn
  • E-Signatures: Signed, Sealed, Delivered
    http://zdnet.com.com/2100-11-524224.html?legacy=zdnn
  • Lingering Questions On E-Sign Security
    http://zdnet.com.com/2100-11-524214.html?legacy=zdnn
  •  
    Zero-Knowledge - Private Credentials
    • Entries that are marked Popular! indicate web sites that are popularly recommended by other users, not necessarily the author of this web site. The author of this web site does not endorse or recommend web sites or services unless explicitly noted.

    Home [frames]          Home [no frames]

    2000-2003 Eric L. Howes