Conclusion

The combination of web browsers that can understand and authenticate digital certificates, companies like VeriSign and Thawte Consulting that are willing to issue those certificates, and the incorporation of CA certificates for these companies embedded in the web browsers has done a remarkable job of bootstrapping an international public key infrastructure in a remarkably short period of time. To date, the main purpose of this infrastructure has been the identifying of corporations, which is a considerably easier job than identifying individuals. (For one thing, corporations are willing to pay more money for identification services than individuals are.) In the next chapter we’ll look at individual identification.

Get Web Security and Commerce now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.