SSL ("Secured Socket Layer") is a protocol used to encrypt the communication between the user's browser and the web server. When SSL is active, a "little padlock" appears on the user's browser, usually in the status line at the bottom (at the top for Mac/Safari users.)
This assures the user that sensitive data (such as credit card numbers) can't be viewed by anyone "sniffing" the network connection (which is an increasing risk as more people use wireless networking).
Common web site owner questions about SSL:
How do I get the little padlock on my site?
To get the little padlock, your site must have an SSL Certificate from a Certificate Authority. Once an SSL Certificate has been purchased and installed, it provides three things:
Once obtained, the certificate must be installed on the web server by your web host. Since your web host also has to generate an initial cypher key to obtain the certificate, very often they will offer to handle the process of obtaining the certificate for you.
My web host has a "shared certificate" that I can use. Should I?
It's still fairly common for small sites to use a shared certificate from the host. In this circumstance, when a page needs to be shown in secured mode, the user is actually sent to a domain owned by the web host, and then back to the originating domain afterwards.
A few years ago, when SSL Certificates were quite expensive (around $400 per year), this was real attractive for new sites just getting their feet wet in e-commerce. Today, with a number of perfectly functional SSL certificates available for under $100 (exclusive of installation, etc.), it is a lot less attractive. Since your user can look a the address line of his or her web browser and see that the site asking for the credit card number is not the site he or she thought they were on, the cost savings is probably not worth the risk of scaring off a sale.
What's the difference between the expensive SSL Certificates and the inexpensive ones?
Usually, mostly price. Some expensive certificates have specific functions, like securing a number of different subdomains simultaneously (a "wildcard" certificate), but the effective differences between basic single site certificates are very slight, despite the wide range of prices:
The encryption mechanism used by all of them is the same, and most use the same key length (which is an indicator of the strength of the encryption) common to most browsers (128 bit).
Some of them ("chained root" certificates) are slightly more of a pain for your web host to install than others ("single root" certificates), but this is pretty much invisible to the site owner.
The amount of actual checking on the ownership of the domain varies wildly between vendors, with some (usually the more expensive) wanting significant documentation (like a D&B number), and others handling it with an automated phone call ("press #123 if you've just ordered a certificate").
Some of them offer massive monetary guarantees as to their security (we'll pay you oodles of dollars if someone cracks this code), but since it's all the same encryption mechanism, if someone comes up with a crack, all e-commerce sites will be scrambling, and the odds of that vendor actually having enough cash to pay all of its customers their oodle is probably slim.
The fact is that you are buying the certificate to insure the safety of the user's data, and to make the user confident that his or her data is secure. For the vast majority of users, simply having the little padlock show up is all they are looking for. There are exceptions (I have a client in the bank software business, and they feel that their customers (bank officers) are looking for a specific premier name on the SSL certificate, so are happy to continue using the expensive one), but most e-commerce customers do not pick their sellers based on who issued their SSL Certificates.
My advice is to buy the cheaper one.
I have an SSL certificate -- why shouldn't I serve all my pages in "Secured" mode?
Because SSL has an overhead -- more data is sent with a page that is encrypted than a page that isn't. This translates to your site appearing to run slower, particularly for users who are on dial-up or other slow connections. Since this also increases the total amount of data transfered by your site, if your web host charges by transfer volume (or has an overage fee, as most do), this can increase the size of your monthly hosting bill.
The server should go into secure mode when asking a user for financial or other sensitive data (which may well be "name, address and phone number", with today's risk of identity theft), and operate in normal mode otherwise.
Updates to this article, and many other great articles and tutorials for small business web site owners can be found at Insanely Great Sites!
![]() |
|
![]() |
|
![]() |
|
![]() |
Yes, it's true, coupons are not just for newspapers anymore.... Read More
It was reported in 'Marketing' magazine this month, that Britain... Read More
Inherent (or Business) RiskInherent Risk is the risk that exists... Read More
E-gold is a digital currency, used extensively on the Internet... Read More
Your stock is tempting, your prices right - your ecommerce... Read More
To obtain more local customers for your business, consider expanding... Read More
Using the Internet to sell products and services to ever... Read More
The days of easy money are overIn these post-dot-com days... Read More
Did you know that over 90% of all online orders... Read More
Businesses, which are still sitting on sidelines and not doing... Read More
For some people, shopping online is as normal as driving... Read More
All of the long, grueling nights and an unknown number... Read More
If you're a writer, researcher, subject matter expert, enthusiastic hobbyist,... Read More
Merchant Account BasicsA Merchant Account is a commercial bank account... Read More
Business to business e-commerce is on the rise! Worldwide B2B... Read More
Fraud is a huge issue when it comes to the... Read More
The virtual corporation is the emerging organisational form, which best... Read More
If you are a small to medium size company and... Read More
What does 'the can' mean? Well, its literal meaning relates... Read More
Did you know that 80% of all sales are made... Read More
Knowledge Management for beginnersKnowledge Management (KM) can be defined simply... Read More
According to Internet.com, by the year 2008 nearly 30% of... Read More
For anyone who has completed research regarding e-commerce, there are... Read More
To increase sales on your website, you must accept credit... Read More
There are many ways to make money online and the... Read More
Thanks to the ubiquity of the internet, online virtual businesses... Read More
The Internet brought a great deal of benefits to our... Read More
Business processes are the building blocks of an enterprise. If... Read More
The European market is a multi-billion $ sector which you... Read More
Last time, we started to take a look at the... Read More
The development and expansion of the Internet has made business... Read More
Customers are tough cookies. They're extremely media aware and increasingly... Read More
The chief criteria for judging an ecommerce shopping cart are... Read More
Some people do not understand the Internet idea of online... Read More
The first article of this series discussed page views per... Read More
In my last column I discussed the process of credit... Read More
It was reported in 'Marketing' magazine this month, that Britain... Read More
Can you encounter the number of times where a Credit... Read More
Summer must be when many work at home Mom start... Read More
Let's face it, there's just way too much information out... Read More
Far too many people get ripped off when setting up... Read More
What is electronic commerce?"Electronic commerce is about doing business electronically.... Read More
What a great idea! Start accepting credit cards and watch... Read More
The Internet began as a male dominated medium, but those... Read More
With a third party merchant account you will have a... Read More
Recently I went looking for an online merchant account, with... Read More
What is an E-marketplace anyway?E-marketplace is a business to business... Read More
You have probably heard many times how you should offer... Read More
The Internet brought a great deal of benefits to our... Read More
When most people think of a retirement gift, they think... Read More
A common frustration among merchants who sell online via a... Read More
I have written at length about the need to anticipate... Read More
Too often we charge ahead and treat the web as... Read More
Paypal is one of the wonders of the web. Never... Read More
Much of my consulting work comprises writing 'Outside Opinion' reports... Read More
Over the past several years, the Internet has emerged as... Read More
Is there a difference between writing a landing page and... Read More
If you're thinking of jumping on the bandwagon and going... Read More
If only I had known that autoresponders are a necessity... Read More
1. Balance - You want to find a directory rich... Read More
Ecommerce use to be about spending thousands of dollars on... Read More
The largest cost and concern of an internet business is... Read More
In 2004, Enquiro.com conducted a study of the search behaviors... Read More
Selecting the right emarketplaceAlthough, IT spending has been staying flat... Read More
You did it again, didn't you? Forgot until the last... Read More
This may not be a popular view, but I think... Read More
E-commerce |