12-1
Digital certificates are not used with google.com since the website is intended for general use by all people who want to search. If the company wants issues a digital certificate then there will be billions of it. I think, for this type of website, a digital certificate is not very much needed. Security should already come from the user’s end.
The message this type of document does not have a security certificate comes out after clicking certificates. When opening the gmail.google.com page the http protocol automatically occurs because this is the default language used by web browsers to fetch web data. To protect a digital certificate from impersonators, the public key is embedded in it through an association and binding a user’s identity it. The expiration of the root certificates is longer since the web certificates came from the root certificates. Web certificates came from the certificate providers. There are so many trusted root certification authorities because there are specific companies that cater to each website. The default format used if you want to export the certificate is DER Encoded Binary X.509 (*.cer).
12-2
I learned in this hands-on exercise how to view all certificates either trusted or untrusted and other details about certificates by just running the certmgr. Revoked certificates can also be viewed and its details. Possible reasons for revocation of certificates can be if a company founds out that the certificate is improperly issued or if using it compromises some security measures. A certificate can also be revoked if a company fails to adhere to the rules and regulations set.
12-3
I learned how to download security certificates specifically from comodo. The security certificates they are issuing is secure and trusted from my view point since it uses an encryption algorithm and basing from the number of their clients it must be trusted. Their clients would not have been this many if their services were poor.
12 – 4
This type of email security provided by MS outlook is very important to have a way of authenticating an email. Applying digital signature is new for MS outlook 2010 and is a very important feature especially at these times when spam mails are always a threat to email users. I learned how to apply the digital signature through the use of a digital certificate to ensure that emails are not spams.