Security
Issues
Encrypted Information
With the rising demand
for security over the Internet, requests for secure features have
increased for web hosting. JRH Web Design & Hosting has addressed
this need with the implementation of PGP-based encryption for information
processed by our secure servers. We offer free secure server space
(information is processed/transferred through the SSL, Secure Socket
Layer) to handle your sensitive information (online order forms,
etc.). Additionally, we offer the means to secure information sent
to you via SSL/on-line forms. The information is encrypted both
on the server and in transit all the way back to your work station(s).
JRH Web Design &
Hosting is also pleased to offer PGP (Pretty Good Privacy) to our
customers as a means of actually encrypting the e-mail (which can
only be decrypted on your end using the PGP public/private key system).
JRH Web Design &
Hosting is one of the few hosting companies that offer the combination
of SSL and PGP to maximize the security of on-line transactions
necessary for e-commerce. The combination of SSL and PGP will provide
you and your customers with maximum security.
Before implementing the
use of PGP, you may want to become familiar with the whole dynamics
of the PGP system by visiting some of the links below for more information.
You will also need to get the PGP
program (available as freeware and in commercial applications,
as well as available for different OS platforms [like Macs and Windows
systems] and in different languages). Since PGP can be rather complex,
we do not go into great detail on our site about the usage or configuration
of PGP (because it can be different from system to system and version
to version). We will help you with the installation and setup of
this software.
You can find information
(manuals, FAQ's, etc.) from any of these sites:
Free Certificate
Some of our hosting
accounts (non-ColdFusion) use our FREE Secure Digital Certificate.
Forms directed to our secure server would have the following URL:
https://www2.security-one.com/home/jrhwebde/nameofform.html
The secure server does
have some restrictions. You may not install and run your own CGI
scripts on the secure server. This is for security considerations
and the amount of load individual scripts would impose on the
secure server.
We do, however, provide
you with an interface to a form mail script that allows you to
use online order forms to process any sensitive information a
customer would like to encrypt and secure, ie., (personal or credit
card information).
This may create some
limitations, due to the simple nature of the fmail script. However,
most customers are utilizing it quite effectively for their secure
online order needs. The issue of security has arisen regarding
the processed mail form going from the secure site to unsecure
e-mail (where all forms processed by form mail goes). To address
this issue, JRH Web Design & Hosting goes one step further
and provides server-side PGP encryption (see details below).
Your Own Secure
Certificate
If your business would
like a personalized secure server (https://www.yourdomain.com)
or you need to run secure CGI scripts (like a shopping cart system)
for your site, then you may want to consider purchasing your own
Digital Certificate and secure server for a nominal fee. JRH Web
Design & Hosting can assist you with the application process
using the services of Thawte or Verisign. Please contact
us with your request.
GeoTrust, Thawte and
Verisign provide Secure Certificates and the details are at:
http://www.geotrust.com
http://www.thawte.com
http://www.verisign.com
These
certificates are supported on our servers and are widely recognized
by today's web browsers. Secure Certificate start at the following
prices:
GeoTrust $189.00
Thawte $149.00
Verisign $349.00
The steps to getting
your own secure server are:
- Obtain a Digital
Secure Certificate from one of the agencies listed above.
- Generate secure
keys for the secure server software and certificate.
- If you want
to generate your own key you will need secure server software.
- Install the secure
server software onto your server
- We charge a $50
installation setup fee to install the secure server software
- There is no monthly
charge for using the secure server on your server
- Your certificate will have to be renewed annually
|