PKI: SSL, S/MIME, Certificates, & Signatures |
- 1st Annual PKI Workshop
- http://www.cs.dartmouth.edu/~pki02/
-
- Ankit Fadia
-
- Kerberos Torn Apart
http://www.ankitfadia.com/kerberos.htm
- SSL Torn Apart
http://www.ankitfadia.com/ssl.htm
-
- ASN.1 Homepage
- http://www-sop.inria.fr/rodeo/personnel/hoschka/asn1.html

-
- ASN.1 Information Site
- http://asn1.elibel.tm.fr/
-
- A Brief Comparison of Email Encryption Protocols
- http://www.arraydev.com/commerce/JIBC/9603-2.htm
-
- Carl Ellison
-
- Certification Infrastructure Needs For Electronic Commerce & Personal Use
http://world.std.com/~cme/nist-7-24/
- Home Page
http://world.std.com/~cme/
- Misuse of the Word Trust
http://world.std.com/~cme/html/trust.html
- SPKI/SDSI & the Web of Trust (PGP vs. X.509 Certificates)
http://world.std.com/~cme/html/web.html
- SPKI/SDSI Certificates
http://world.std.com/~cme/html/spki.html
-
- Certificate Management & Installation with OpenSSL
- http://tirian.magd.ox.ac.uk/~nick/openssl-certs/index.html
-
- CERT - Using PGP to Verify Digital Signatures
- http://www.cert.org/archive/pdf/PGPsigs_paper2.pdf (PDF document)
-
- CESG: Secure Messaging & PKI Interoperability
- http://www.cesg.gov.uk/technology/... (PDF document)
-
- Cisco - Kerberos White Paper
- http://www.cisco.com/warp/public/106/1.html
-
- Counterpane
-
- Risks of PKI: Electronic Commerce
http://www.schneier.com/essay-insiderisks5.html
Risks of PKI: Secure E-mail
http://www.schneier.com/essay-insiderisks4.html
Ten Risks of PKI
http://www.schneier.com/paper-pki.html
or http://www.schneier.com/paper-pki-ft.txt
CREN - Certificate Authority Services
http://www.cren.net/crenca/
Comodo Group
http://www.comodogroup.com/
CyberWatch-911 - How to Check Your Browser's Cipher Strength
http://www.cyberwatch911.org/reporting/ciphercheck.html
Dartmouth
PKI Lab
http://www.dartmouth.edu/~pkilab/
Learning About PKI
http://www.dartmouth.edu/~pkilab/pages/Learning_About_PKI.html
Using Public Key Certificates
http://www.dartmouth.edu/~pkilab/pages/Using_PKI.html
Using S/MIME E-mail
http://www.dartmouth.edu/~pkilab/pages/Using_SMIME_e-mail.html
Using Web Resources with Public Key CErtificates
http://www.dartmouth.edu/~pkilab/pages/Using_Web_Resources.html
What is PKI
http://www.dartmouth.edu/~pkilab/pages/PKI_Background.html
Defective Sign & Encrypt in S/MIME, PKCS#7, MOSS, PEM, PGP, & XML
http://world.std.com/~dtd/sign_encrypt/sign_encrypt7.html
Digital Certificates (Jerilyn Waters)
http://oden.csom.umn.edu/idsc6452/Papers/JWaters/Paper.htm
Digital Certificates & Encryption
http://www.enteract.com/~lspitz/digcerts.html
Digital Certificates: Frequently Asked Questions
http://www.cyfi.com/cyfi/dcfaq.htm
Digital Signature Guidelines: A Tutorial
http://www.abanet.org/scitech/ec/isc/dsg-tutorial.html
Digital Signature Law Survey
http://rechten.kub.nl/simone/ds-lawsu.htm
Digital Trust - Windows Mail with X.509
http://www.geocities.com/tnotary/stx509.html
Dr S N Henson's Home Page
http://www.drh-consultancy.demon.co.uk/
Electronic Signatures & Internet Security: An Explanation & Practical How-To Notes
http://www.tim-richardson.net/misc/security.html
Encrypting with Stunnel: How to Encrypt Arbitrary TCP connections Inside SSL
http://www-106.ibm.com/developerworks/security/library/s-stun.html
Encryption, Authentication & Public Key Infrastructure
http://www2.rowan.edu/business/...
Entrust
Home Page
http://www.entrust.com/
Documentation
http://www.entrust.com/resources/whitepapers.htm
Internet Security 101
http://www.entrust.com/security101/index.htm
An Introduction to Cryptography & Digital Signatures
http://www.entrust.com/resources/descriptions/1.htm
Resources
http://www.entrust.com/resources/
Trust Management in the Public-Key Infrastructure
http://www.entrust.com/resources/descriptions/63.htm
Understanding Digital Certificates & Secure Sockets Layer (SSL)
http://www.entrust.com/resources/descriptions/189.htm
Fabian Rodriquez - Thawte X.509 Certificates/OpenPGP Encryption
http://www.fabianrodriguez.com/encryption/
Federal PKI Policy Authority
http://www.cio.gov/fpkipa/ (PDF document)
Finance Outlook - Digital Signatures, Digital Certificates, & PKI
http://www.financeoutlook.com/pki.htm
Fortify.net
Fortify for Netscape ReadMe
http://www.fortify.net/README_main.html
SSL Check
https://www.fortify.net/sslcheck.html
Fraudulent Versign Certificate
http://www.microsoft.com/technet/security/...
& http://securityresponse.symantec.com/...
& http://securityresponse.symantec.com/...
& http://www.sans.org/rr/paper.php?id=679 (PDF document)
& http://www.verisign.com/developer/...
The Free Cert Project
http://www.freecert.org/
GeoTrust
http://www.geotrust.com/index_default.htm
GlobalSign
About Digital Certificates
http://support.globalsign.net/en/...
About Digital Signatures
http://support.globalsign.net/en/...
Home Page
http://www.globalsign.net/
Global Trust Register
http://www.cl.cam.ac.uk/Research/Security/Trust-Register/index-1998.html
IETF
Kerberized Internet Negotiation of Keys (kink) Working Group
http://www.ietf.org/html.charters/kink-charter.html
Kerberos WG (krb-wg) Working Group
http://www.ietf.org/html.charters/krb-wg-charter.html
Public-Key Infrastructure (X.509) (pkix) Working Group
http://www.ietf.org/html.charters/pkix-charter.html
or http://www.imc.org/ietf-pkix/index.html
S-MIME Mail Security (smime) Working Group
http://www.ietf.org/html.charters/smime-charter.html
Transport Layer Security (tls) Working Group
http://www.ietf.org/html.charters/tls-charter.html
XML Digital Signatures (xmldsig) Working Group
http://www.ietf.org/html.charters/xmldsig-charter.html
Information Security Magazine - PKI Policy Pitfalls
http://www.infosecuritymag.com/articles/july01/features_pki.shtml
Intelligent Enterprise Magazine
The Burden of Proof
http://www.intelligententerprise.com/...
The Weakest Links
http://www.intelligententerprise.com/...
Internet2 HEPKI-TAG
http://middleware.internet2.edu/hepki-tag/
Internet2 HEPKI-TAG PKI Development Website
https://pkidev.internet2.edu/
Internet2 PKI Labs
http://middleware.internet2.edu/pkilabs/
Internet Mail Consortium - S/MIME & OpenPGP
http://www.imc.org/smime-pgpmime.html
Introducing SSL and Certificates
http://www.pseudonym.org/ssl/ssl_intro.html
http://www.pseudonym.org/ssl/old/ssl_intro.html (old)
Introducing SSL and Certificates Using SSLeay
http://home.earthlink.net/~fjhirsch/Papers/wwwj/article.html
http://www.linuxsecurity.com/resource_files/...
ITU-T Publications - X.509
http://www.itu.int/rec/recommendation.asp?...
ITU-T Recommendation - X.509 (08-1997)
http://www.itu.int/ITU-T/asn1/database/itu-t/x/x509/1997/
KPMG - Public Key Infrastructure Services
http://www.kpmg.com/Rut2000_prod/... (PDF document)
MCG
Overview of Certification Systems
http://www.mcg.org.br/cert.htm
or http://www.mcg.org.br/certover.pdf (PDF document)
Publications
http://mcg.org.br/papers.htm
X.509 Certificates: A Readable Unabridged Inside View
http://www.mcg.org.br/x509cert.htm
Microsoft
Authenticode for Internet Explorer 4.0
http://msdn.microsoft.com/downloads/...
Authenticode for Internet Explorer 5.0
http://msdn.microsoft.com/downloads/...
Certificate Autoenrollment in Windows XP
http://www.microsoft.com/windowsxp/...
Certificates Overview
http://www.microsoft.com/technet/prodtechnol/...
Cipher Strength Appears as 0-Bit in Internet Explorer
http://support.microsoft.com/default.aspx?scid=KB;en-us;q261328
Creating, Viewing, & Managing Certificates
http://msdn.microsoft.com/library/en-us/security/...
Cryptographic Service Provider Developer's Kit
http://msdn.microsoft.com/downloads/sample.asp?...
Cryptography Tools
http://msdn.microsoft.com/library/en-us/security/...
Cryptography & PKI Basics
http://www.microsoft.com/windows2000/techinfo/...
or http://www.microsoft.com/technet/prodtechnol/...
Description of Digital Certificates
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q195724
How To Secure XML Web Services with SSL
http://support.microsoft.com/view/tn.asp?kb=307267
Internet Explorer 4 Resource Guide - Digital Certificates
http://www.microsoft.com/technet/archive/ie/...
Internet Explorer 5 Resource Guide - Digital Certificates
http://www.microsoft.com/technet/prodtechnol/...
or http://www.microsoft.com/technet/prodtechnol/...
Internet Explorer 6 Resource Guide - Digital Certificates
http://www.microsoft.com/technet/prodtechnol/ie/...
An Introduction to the Windows 2000 Public Key Infrastructure
http://www.microsoft.com/windows2000/techinfo/...
PKI Enhancements in Windows XP Professional & Windows .NET Server
http://www.microsoft.com/windowsxp/pro/..
PKI Enhancements in Windows XP Professional & Windows .NET Server
http://www.microsoft.com/windowsxp/pro/...
Secure Your Messages on the Internet
http://office.microsoft.com/assistance/9798/Olsecmai.aspx
Security with Certificates
http://www.microsoft.com/technet/prodtechnol/...
Step-by-Step Guide to Advanced Certificate Management
http://www.microsoft.com/technet/prodtechnol/...
Step-by-Step Guide to End User Certificate Management
http://www.microsoft.com/technet/prodtechnol/...
Step-by-Step Guide to Public Key-Based Client Authentication in Internet Explorer
http://www.microsoft.com/windows2000/techinfo/...
Step-by-Step Guide to Public Key Features in Outlook Express 5.0 & above
http://www.microsoft.com/windows2000/techinfo/...
Step-by-Step Guide to Public Key Features of Outlook 2000
http://www.microsoft.com/windows2000/techinfo/...
Understanding Certificates
http://www.microsoft.com/technet/prodtechnol/...
Using Digital Certificates in Internet Explorer
http://www.microsoft.com/windows/ie/using/howto/...
Windows 2000 Certificate Services
http://www.microsoft.com/windows2000/techinfo/...
Windows 2000 Public Key Infrastructure
http://www.microsoft.com/windows2000/techinfo/...
Windows 2000 Server Resource Kit - Certificate Services & Public Key Infrastructure
http://www.microsoft.com/technet/prodtechnol/...
Windows 2000 Server Resource Kit - Choosing Security Solutions That Use Public Key Technology
http://www.microsoft.com/technet/prodtechnol/...
Windows 2000 Server Resource Kit - Cryptography for Network & Information Security
http://www.microsoft.com/technet/prodtechnol/...
Microsoft - Kerberos, Authentication & Access Control
CLICK HERE
Mind Products - Digital Certificates
http://mindprod.com/certificate.html
Mozilla.org - Network Security Services (NSS)
http://www.mozilla.org/projects/security/pki/nss/
NetCraft
An Example Certificate
http://www.netcraft.co.uk/ssl/certnote.html
SSL Server Glossary
http://www.netcraft.co.uk/ssl/glossary.html
What Is This SSL Site Running?
http://www.netcraft.com/sslwhats/
Net@EDU PKI Working Group
http://www.educause.edu/netatedu/groups/pki/
Netscape
Applying Communicator's Security Features
http://developer.netscape.com/docs/...
Certificate Authority Services
https://certs.netscape.com/client.html
Certificate Specifications
http://wp.netscape.com/eng/security/...
Enterprise Security (PKI)
http://verisign.netscape.com/security/...
Implementing PKI
http://verisign.netscape.com/security/pki/...l
Introduction to SSL
http://developer.netscape.com/docs/manuals/...
Object Signing Resources
http://developer.netscape.com/software/...
Object Signing Tools
http://developer.netscape.com/software/...
Personal Certificates/font>
http://wp.netscape.com/security/techbriefs/...
Secure Sockets Layer (SSL)
http://wp.netscape.com/security/...
Security Center
http://wp.netscape.com/security/index.html
Signing Your Cokde
http://verisign.netscape.com/security/...
Tech Briefs
http://wp.netscape.com/security/...
The SSL Protocol Version 3.0
http://wp.netscape.com/eng/ssl3/...
Understanding PKI
http://verisign.netscape.com/security/...
Understanding Security & Privacy
http://wp.netscape.com/security/...
Network Computing - Certificate Revocation: When Not To Trust
http://www.networkcomputing.com/1112/1112ws1.html
Network Computing - Tracking Digital Certificates
http://www.nwc.com/1116/1116colmoskowitz.html
Network Computing - What's 'E' About Signatures?
http://www.nwc.com/1118/1118colmoskowitz.html
Network Magazine
Email Security
http://www.networkmagazine.com/article/...
SSL & S-HTTP
http://www.networkmagazine.com/article/...
NHSE - X.509 Certificates & Certification Authorities
http://www.cs.utk.edu/~browne/nhse-legal/node12.html
NIST
Federal Agency Use of Public Key Technology for Digital Signatures & Authentication
http://csrc.nist.gov/publications/nistpubs/...
or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
Guidelines On Electronic Mail Security
http://csrc.nist.gov/publications/nistpubs/ ...
or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
Introduction to Public Key Technology & the Federal PKI Infrastructure
http://csrc.nist.gov/publications/nistpubs/...
or http://csrc.nist.gov/publications/nistpubs/... (PDF document)
PKI Program
http://csrc.nist.gov/pki/
PKI Related Links
http://csrc.nist.gov/pki/twg/links.htm
PKI Slide Show
http://csrc.nist.gov/nissc/1999/program/isso/sld001.htm
S-MIME Activities
http://csrc.nist.gov/pki/smime/welcome.htm
NSA - Guide to the Secure Configuration & Administration of Microsoft Windows 2000 Certificate Services
http://www.nsa.gov/snac/win2k/download.htm
or http://www.nsa.gov/snac/win2k/guides/w2k-12.pdf (direct download)
NSA - Guide to Using DoD PKI Certificates in Outlook 2000
http://www.nsa.gov/snac/win2k/download.htm
or http://www.nsa.gov/snac/win2k/guides/w2k-15.pdf (direct download)
NWFusion - The ABCs of PKI
http://www.nwfusion.com/research/2000/0117feat.html
OpenCA PKI Development Project
http://www.openca.org/openca/
The Open-source PKI Book
http://ospkibook.sourceforge.net/
OpenSSL
http://www.openssl.org/
or http://openssl.planetmirror.com/
Peter Gutmann
Authenticode
http://www.cs.auckland.ac.nz/~pgut001/pubs/authenticode.txt
Secure Internet-Based Electronic Commerce: The View from Outside the United States
http://www.cs.auckland.ac.nz/~pgut001/pubs/icommerce.pdf
X.509 Style Guide
http://www.cs.auckland.ac.nz/~pgut001/pubs/x509guide.txt
Phrack Inc: "Haaaang on snoopy, snoopy hang on (SSL for fun & profit)"
http://www.phrack.org/show.php?p=57&a=13
PKI Forum
http://www.pkiforum.org/
PKI: An Insider's View
http://www.infosecuritymag.com/articles/october01/columns_logoff.shtml
The PKI Challenge
https://www.eema.org/pki-challenge/index.asp
PKI Law
http://www.pkilaw.com/
PKI Law - 25 Steps to the Successful Implementation of a Corporate Public Key Infrastructure
http://www.pkilaw.com/25step.htm
The PKI Page
http://www.pki-page.org/
Public Key Infrastructure Project
http://www.dstc.qut.edu.au/MSU/projects/pki/
Recognition of Your SSL Certificate
http://www.sslreview.com/content/recognition.html
Ridge Cook - Encryption & PKI
http://groups.yahoo.com/group/PracticalEncryption/...
RSA Security
Home Page
http://www.rsasecurity.com/
Planet SSL
http://www.rsasecurity.com/standards/ssl/index.html
Public Key Cryptography Standards (PKCS)
http://www.rsasecurity.com/rsalabs/pkcs/index.html
RSA Labs CryptoBytes
http://www.rsasecurity.com/rsalabs/cryptobytes/index.html
RSA Labs Cryptography FAQ
http://www.rsasecurity.com/rsalabs/faq/
S/MIME Central
http://www.rsasecurity.com/standards/smime/
S/MIME FAQ
http://www.rsasecurity.com/standards/smime/faq.html
SSL Basics for Internet Users
http://www.rsasecurity.com/standards/ssl/basics.html
White Papers
http://www.rsasecurity.com/solutions/...
SANS Institute - Digital Certificates
http://www.sans.org/rr/catindex.php?cat_id=13/
SANS Institute - Encryption & VPNs
http://www.sans.org/rr/catindex.php?cat_id=20
SDSI-SPKI Resources
http://www.syntelos.org/spki/
Securing IT Resources with Digital Certificates & LDAP
http://www.educause.edu/ir/library/html/cnc9707/cnc9707.html
Securing Windows 2000 Certificate Services
http://www.systemexperts.com/win2k/CertSrv/W2KCert10.pdf (PDF document)
SecurityFocus.com - Remote Desktop Management Solution for Microsoft
http://www.securityfocus.com/infocus/1677
Server Certificate Registration
http://www.geotrust.com/certificateregistration/
Slackers - Digital Certificates
http://www.massconfusion.com/crypto/Lecture/product1.shtml
S/MIME & PGP Products Interoperability
http://www.arraydev.com/commerce/JIBC/9603-2.htm
S/MIME - the Reality of Interoperability
http://www.net-security.org/article.php?id=286
Spyrus
http://www.spyrus.com/
SSL Certificates HOWTO
http://www.tldp.org/HOWTO/SSL-Certificates-HOWTO/index.html
SSLeay Certificate Cookbook
http://www.pseudonym.org/ssl/ssl_cook.html
http://www.pseudonym.org/ssl/old/ssl_cook.html (old)
SSLeay & SSLapps FAQ
http://psych.psy.uq.oz.au/~ftp/Crypto/
SSL Project
http://ntrg.cs.tcd.ie/mepeirce/Dce/99/ssl/home.htm
SSLreview
http://www.sslreview.com/
SSL-Talk List FAQ
http://www.faqs.org/faqs/computer-security/ssl-talk-faq/
or http://www.cs.uu.nl/wais/html/na-dir/computer-security/ssl-talk-faq.html
Sun - Public Key Infrastructure Overview
http://www.sun.com/blueprints/0801/publickey.pdf (PDF doc)
Thawte
Cryptography FAQs
http://www.thawte.com/html/...
Full Strength Crypto: SGC SuperCerts
http://www.thawte.com/html/...
Home Page
http://www.thawte.com/
Personal Certification Home
https://www.thawte.com/cgi/personal/contents.exe
Personal Email Certificates
http://www.thawte.com/html/...
Personal Certificate FAQ's
http://www.thawte.com/html/C...
Repository
http://www.thawte.com/repository/index.html
Root Certificates
http://www.thawte.com/html/S...
Root Certificate Trust Mappings
http://www.thawte.com/html/SUPPORT/...
or http://www.thawte.com/html/...
or http://www.thawte.com/html/...
Root & CRL Database
https://www.thawte.com/cgi/lifecycle/roots.exe
Support Centre
http://www.thawte.com/html/...
TrustToolbar Secure Email Certificates (Comodo Group)
http://www.trusttoolbar.com/products/EmailCerts/index.html
UC Berkeley
About Web Browser Security
http://wssg.berkeley.edu/public/projects/...
Email Privacy, Integrity, & Authenticity
http://wssg.berkeley.edu/public/projects/...
Server Certificates & SSL: What, Why, and Issues
http://wssg.berkeley.edu/public/projects/...
Web Browser Security
http://wssg.berkeley.edu/public/projects/...
UC San Diego
Converting Certificates
http://security.sdsc.edu/help/pki/convert.shtml
Kerberos Help & Information
http://security.sdsc.edu/help/kerberos.shtml
PKI/GSI: NPACI's Public Key Infrastructure/Grid Security Infrastructure
http://www.npaci.edu/online/v4.5/pki-gsi.html
What is PKI?
http://security.sdsc.edu/help/pki/description.shtml
The University of Wisconsin (Madison) - PKI Lab
http://www.cs.wisc.edu/pkilab/
The University of Wisconsin (Madison) - Using X.509 Certificates for Authentication
http://www.cs.wisc.edu/condor/manual/v6.1/3_9Using_X_509.html
Verisign
About Digital IDs
https://digitalid.verisign.com/client/help/aboutdid.htm
Browser Check
http://verisign.netscape.com/advisor/index.html
Digital IDs: The New Advantage
http://www.verisign.com/clientauth/whitepaper.html
Home Page
http://www.verisign.com/
Implementing Web Site Client Authentication Using Digital IDs
http://www.verisign.com/clientauth/kit/details.html
Introduction to Cryptography
https://digitalid.verisign.com/client/help/introCrypto.htm
or http://www.verisign.com/repository/crptintr.html
Introduction to Client Digital IDs
http://www.verisign.com/repository/brwidint.html
Public-Key Infrastructure (PKI)
http://www.verisign.com/whitepaper/...
Repository
http://www.verisign.com/repository/index.html
Wild ID - Totally Free Digital ID
http://www.wildid.com/
X.509 Certificates (Dr. Dobb's Journal)
http://www.ddj.com/documents/s=901/ddj9907c/9907c.htm
X.509 Certificates & Certificate Revocation Lists (CRLs)
http://java.sun.com/j2se/1.3/docs/guide/security/cert3.html
or http://java.sun.com/products/jdk/1.2/docs/guide/security/cert3.html
or http://techref.infm.ulst.ac.uk/java2/docs/guide/security/cert3.html
ZDNet
Digital Signatures a Security Threat?
http://zdnet.com.com/2100-11-524184.html?legacy=zdnn
Digital Signatures A Threat To Privacy?
http://zdnet.com.com/2100-11-519795.html?legacy=zdnn
E-Signatures: Signed, Sealed, Delivered
http://zdnet.com.com/2100-11-524224.html?legacy=zdnn
Lingering Questions On E-Sign Security
http://zdnet.com.com/2100-11-524214.html?legacy=zdnn
Zero-Knowledge - Private Credentials
http://www.zks.net/media/credsnew.pdf (PDF document)
|