{"id":10462,"date":"2017-07-24T13:36:12","date_gmt":"2017-07-24T13:36:12","guid":{"rendered":"http:\/\/jobhouse.com.gh\/web-design-and-web-services\/?p=10462"},"modified":"2017-07-24T13:36:12","modified_gmt":"2017-07-24T13:36:12","slug":"importance-ssl-secure-web-browsing","status":"publish","type":"post","link":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/importance-ssl-secure-web-browsing\/","title":{"rendered":"Importance of SSL For Secure Web Browsing"},"content":{"rendered":"<p>Time and again, we hear of incidents involving identity theft, stealing of account passwords, installation of malware from web sources, and even ransomware.<\/p>\n<p>All of these security breaches have a certain attack vector in common, and that is\u00a0<a href=\"https:\/\/en.wikipedia.org\/wiki\/Social_engineering_(security)\" target=\"_blank\" rel=\"nofollow noopener\">social engineering<\/a>\u00a0\u2013 when you\u2019re tricked into clicking on a link you\u2019re not supposed to, and when you open files or applications from dubious sources. It\u2019s an easy mistake to make, especially when the website looks legitimate, but it\u2019s also easy to avoid \u2014 if you know what SSL is.<\/p>\n<p>If you think about it, you\u2019ll probably recall that there\u2019s a green padlock icon on your online banking website, and it usually includes the name of your bank. That\u2019s SSL and it\u2019s what will save you from becoming a victim of nefarious hacks.<\/p>\n<figure class=\"post-image post-mediaBleed aligncenter\"><img decoding=\"async\" class=\"aligncenter size-full wp-image-1063712 lazy lazyLoaded\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image3-3.png\" sizes=\"(max-width: 556px) 100vw, 556px\" srcset=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image3-3.png 556w, https:\/\/cdn3.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image3-3-280x16.png 280w, https:\/\/cdn3.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image3-3-540x30.png 540w, https:\/\/cdn3.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image3-3-270x15.png 270w\" alt=\"\" width=\"556\" height=\"31\" \/><\/figure>\n<p>In this article, I will explain, in layman\u2019s terms, what SSL means, and its importance in today\u2019s everyday computing.<\/p>\n<h2><b>What is SSL, and how does it work?<\/b><\/h2>\n<p>Let\u2019s start with the basics: SSL stands for Secure Sockets Layer.<\/p>\n<p>SSL is the standard implementation for establishing a secure and encrypted link between two points on the internet \u2014 say your computer and a web server.<\/p>\n<p>It has since been updated to SSL\/TLS or Secure Sockets Layer\/Transport Layer Security, but it is still known simply as SSL for simplicity. It is also the basis for secure HTTP or HTTPS \u2014 it is basically a website transported through hypertext transfer protocol that goes through a secure, encrypted connection.<\/p>\n<p>Too much jargon? Let\u2019s simplify it even further, with some analogies.<\/p>\n<p>Suppose you want to open an account with your local bank. You approach the teller, but she does not want to open one for you, since she does not know you (and since your account will be the basis for future transactions). One option is for the bank to call the authorities (the state department for example, or social security, or the department of motor vehicles) since they have your identification.<\/p>\n<p>But that seems to be tedious, so she asks for identification, instead. You provide your passport, which contains your personal details, biometrics, etc. This serves as the document that authenticates your identity. However, the document in itself does nothing exceptional except identify you. You cannot use it to withdraw money from your bank, per se.<\/p>\n<p>However, because your passport is an identifying document issued by a trusted authority (the government, the state department in particular), you can use it to open an account, acquire and ATM card, which you can then use to withdraw from the bank.<\/p>\n<figure class=\"post-image post-mediaBleed aligncenter\"><img fetchpriority=\"high\" decoding=\"async\" class=\"aligncenter size-featured_img wp-image-1063714 lazy lazyLoaded\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4-796x456.png\" sizes=\"(max-width: 796px) 100vw, 796px\" srcset=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4-796x456.png 796w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4-280x160.png 280w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4-472x270.png 472w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4-236x135.png 236w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image2-4.png 947w\" alt=\"\" width=\"796\" height=\"456\" \/><\/figure>\n<p>Similarly, the same scenario happens when you are accessing a secure website. Your client seeks authentication and identification from the web server, which it presents through its SSL certificate. The website cannot simply say \u201cI am bank of America\u201d \u2014 it needs a trusted certificate provider to establish this identity. This actually\u00a0<a href=\"https:\/\/www.incapsula.com\/cdn-guide\/cdn-and-ssl-tls.html#ssl-handshake\" target=\"_blank\" rel=\"nofollow noopener\">takes the form of an SSL handshake<\/a>, which is a back-and-forth communication to establish a connection and identification before the web browser actually requests the needed information.<\/p>\n<h2><b>Is it that simple, then? Can\u2019t I just acquire a certificate from a cheap provider?<\/b><\/h2>\n<p>Now, not all SSL certificates and certificate providers are made equal.<\/p>\n<p>Some are enterprise-grade certificates and cost a pretty penny (worth thousands of dollars annually or so), while some are practically free, such as with\u00a0LetsEncrypt.<\/p>\n<p>An analogy here is that your passport is a secure indication of your citizenship to a country, and it is a trustworthy document that establishes your citizenship and identity. It can even be used to travel to other countries. Note, however, that not all passports are the same. Some are more \u201cpowerful\u201d than others, since a bearer can travel to more countries without requiring a visa. For other passport bearers, they are required to secure additional documents (visa or other travel documents) before being granted access to a country.<\/p>\n<p>In the same breath, SSL certificates are different. In the example above, for example, the certificate\u2019s name itself is displayed on the browser, and it is one of the top-tier types of certificates. Most lower-grade certificates only indicate the \u201cSecure\u201d icon, but the certificate owner\u2019s name is not presented.<\/p>\n<figure class=\"post-image post-mediaBleed aligncenter\"><img decoding=\"async\" class=\"aligncenter size-full wp-image-1063715 lazy lazyLoaded\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image5-2.png\" sizes=\"(max-width: 333px) 100vw, 333px\" srcset=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image5-2.png 333w, https:\/\/cdn3.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image5-2-280x31.png 280w, https:\/\/cdn3.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image5-2-270x30.png 270w\" alt=\"\" width=\"333\" height=\"37\" \/><\/figure>\n<p>Granted, not all websites require the security of a bank website.<\/p>\n<p>If you run a small blog, then security is appreciated, but not a deal-breaker. If you run an ecommerce website or a fintech company, however, users are bound to share details like addresses, card numbers, and the like. In this case, it would be necessary to have a top-tier SSL certificate.<\/p>\n<p>SSL certificates come in different grades, as assessed by platforms like\u00a0ssllabs.com. For example, The Next Web has an A+ certificate.<\/p>\n<figure class=\"post-image post-mediaBleed aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-featured_img wp-image-1063716 lazy lazyLoaded\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3-796x379.png\" sizes=\"(max-width: 796px) 100vw, 796px\" srcset=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3-796x379.png 796w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3-280x133.png 280w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3-540x257.png 540w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3-270x128.png 270w, https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2017\/07\/image4-3.png 1066w\" alt=\"\" width=\"796\" height=\"379\" \/><\/figure>\n<p>One way of establishing a Grade A+ certificate without spending a lot is by deploying your website or app infrastructure over a content delivery network that itself has a Grade A+ certificate, wherein your website will inherit the CDN\u2019s own SSL certificate grade.<\/p>\n<h2><b>Let\u2019s recap<\/b><\/h2>\n<p>This does not preclude other potential dangers, such as social engineering attacks, spoofing attacks, and other such attack vectors that can circumvent the security of connections.<\/p>\n<p>To conclude with my earlier analogy, it\u2019s like someone creating a fake ID and pretending to be you while making a transaction at the bank, or someone stealing your ATM or credit card and using it to buy items or withdraw money (with the right PIN).<\/p>\n<p>Still, SSL is certainly the bare minimum of ensuring security of transactions and communications across client and server. No website or application should be without it, and you, as a user, should be wary of sending information across non-secure connections.<\/p>\n<p>Source: This <a href=\"https:\/\/thenextweb.com\/contributors\/2017\/07\/20\/ssl-important-secure-web-browsing\/#.tnw_VTrxmILu\" target=\"_blank\">article<\/a> was formally published on <a href=\"https:\/\/thenextweb.com\/#.tnw_sc43Nr32\" target=\"_blank\">TNW<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Time and again, we hear of incidents involving identity theft, stealing of account passwords, installation of malware from web sources, and even ransomware. All of these security breaches have a certain attack vector in common, and that is\u00a0social engineering\u00a0\u2013 when you\u2019re tricked into clicking on a link you\u2019re not supposed to, and when you open files or applications from dubious sources. It\u2019s an easy mistake to make, especially when the website looks legitimate, but it\u2019s also easy to avoid \u2014 if you know what SSL is. If you think about it, you\u2019ll probably recall that there\u2019s a green padlock icon on your online banking website, and it usually includes the name of your bank. That\u2019s SSL and it\u2019s what will save you from becoming a victim of nefarious hacks. In this article, I will explain, in layman\u2019s terms, what SSL means, and its importance in today\u2019s everyday computing. What is SSL, and how does it work? Let\u2019s start with the basics: SSL stands for Secure Sockets Layer. SSL is the standard implementation for establishing a secure and encrypted link between two points on the internet \u2014 say your computer and a web server. It has since been updated to SSL\/TLS or Secure Sockets Layer\/Transport Layer Security, but it is still known simply as SSL for simplicity. It is also the basis for secure HTTP or HTTPS \u2014 it is basically a website transported through hypertext transfer protocol that goes through a secure, encrypted connection. Too much jargon? Let\u2019s simplify it even further, with some analogies. Suppose you want to open an account with your local bank. You approach the teller, but she does not want to open one for you, since she does not know you (and since your account will be the basis for future transactions). One option is&#8230; <\/p>\n<p><a class=\"readmore\" href=\"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/importance-ssl-secure-web-browsing\/\">Continue Reading<\/a><\/p>\n","protected":false},"author":1,"featured_media":10463,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[27],"tags":[],"class_list":["post-10462","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tutorials"],"_links":{"self":[{"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/posts\/10462","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/comments?post=10462"}],"version-history":[{"count":0,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/posts\/10462\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/media?parent=10462"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/categories?post=10462"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jobhouse.com.gh\/ghana-web-design-company\/wp-json\/wp\/v2\/tags?post=10462"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}