SSL Security Levels
|
SSL security levels vary depending upon the way on SSL certificate is installed on a server and the configuration used. SSL is simple to use but it's security can be compromised if basic installation an configurations are not completed to a competent level, hackers are then able to decrypt the security on a badly installed SSL certificate.
Report on a well configured SSL certificate.
(Pic)
Image taken on (Date)
Report on a badly configured SSL certificate
(Pic)
Image taken on (Date)
Ensuring Site Security
We recommend that all data collection forms are placed behind a well configured SSL certificate. This includes enquiry forms, product information forms, login area's & email request forms, to protect your data for your business. It is a requirement for PCI compliance for a website to have an SSL certificate if your site takes online payments.
About SSL Secure Socket Layer (SSL) is an international standard for encrypted network communication; it was conceived in 1994 by Netscape and is supported by all major international web browsers.
Is SSL Enough Depending on the type of website will depend if having a well configured and installed SSL certificate is enough. In our opinion it is the starting point to maintaining high security levels and recommend if any form of ecommerce or mission critical data collection happens on the website that you look to meet with today's recommended data security standards - See our PCI DSS compliance section for further information.
SSL Certificate InspectionThe SSL server certificate is often the weakest point of any SSL server configuration. If a certificate is shown as not trusted (not signed by a well known certificate authority like Global Sign) it may fail to prevent man-in-the-middle (MITM) attacks and would effectively render the SSL useless. Incorrect certificates or expired certificates can erode trust and customer confidence in your website, removing credibility from your organisation and allowing competitors to take potential & existing clients away from you.
Common SSL Certificate Issues are:
The three main points when installing & setting up an SSL certificate on a server are:
Testing your SSL Certificate If you are concerned about the strength, setup & configuration of your websites SSL certificate this can be completed free of charge on websites such as www.ssllabs.com. SSLlabs .com is operated by Qualys a reputable global website security company. (We at Quantum believe your SSL should be rated as an 'A' on Qualy's ssllabs.com tester, if not you need to ask yourself why?)
Selecting a Company that Can Deliver Quantum Web Solutions believes that best practice is always the way forward when dealing with online security, many web companies will offer you a website, we offer secure functional business solutions.
|



























