Ecommerce Implementation  «Prev  Next»

SET Protocol- Exercise

Course project: Creating and certifying a certificate to enable SSL encryption

Objective: Create and certify a certificate to enable SSL encryption.

Exercise scoring

This exercise is auto-scored. There is nothing to submit to your tutor.

Instructions

This installment of the course project simulates the process required to generate a signed certificate. This certificate will allow SSL encryption on data passing between the Web server and the Web browser. If, for example, you wished to do this for the English-collectors.com site, you could generate a certificate, then have it signed by VeriSign, and then install it.
In the series of imagesbelow, you will take the necessary steps for generating a key pair and then getting your public key signed by a CA. After your key is signed, you will then install your public key to enable IIS to provide SSL-encrypted sessions.

Generate Key Pair 1
1) Generate Key Pair 1

Generate Key Pair 2
2) Generate Key Pair 2

Generate Key Pair 3
3) Generate Key Pair 3

Generate Key Pair 4
4) Generate Key Pair 4

Generate Key Pair 5
5) Generate Key Pair 5

Generate Key Pair 6
6) Generate Key Pair 6

Generate Key Pair 7
7) Generate Key Pair 7

Generate Key Pair 8
8) Generate Key Pair 8

Generate Key Pair 9
9) Generate Key Pair 9

Generate Key Pair 10
10) Generate Key Pair 10

Generate Key Pair 11
11) Generate Key Pair 11

Generate Key Pair 12
12) Generate Key Pair 12

Generate Key Pair 13
13) Generate Key Pair 13

Generate Key Pair 14
14) Generate Key Pair 14

Generate Key Pair 15
15) Generate Key Pair 15

Generate Key Pair 16
16) Generate Key Pair 16

Generate Key Pair 17
17) Generate Key Pair 17

Generate Key Pair 18
18) Generate Key Pair 18

Generate Key Pair 19
19) Generate Key Pair 19

Generate Key Pair 20
20) Generate Key Pair 20

Generate Key Pair 21
21) Generate Key Pair 21

Generate Key Pair 22
22) Generate Key Pair 22

  1. First, you must generate a key (i.e., unsigned certificate). You do this using the Key Manager, found in the Microsoft Management Console (MMC) shown here. This console allows you to administer IIS 5.0, among other services and applications. From the MMC, select the Key Manager icon on the toolbar. It resembles a hand holding a key.
  2. key_manager
  3. The key manager is now open. Normally, you would right-click on WWW icon, but for the purposes of this simulation, simply click on it.
  1. You are now seeing the first of several dialog boxes that will help you create your key. In this dialog box, you now have two options. For this simulation, you will send your key to VeriSign. The correct radio button has been chosen for you already. Now, make sure you save this key in a place you can remember. In fact, in a production setting, it would be a good idea to record this information in a secure place. You may not be able to install your certificate without this information. Enter C:\englishcollectors.txt as the location and name of the key and click Next.
  2. Location: C:\englishcollectors.txt
You need to give the key a name and a password. In the Key Name field, enter englishcollectors.txt. The Password field requires a strong password, because it encrypts the certificate files so you transmit them securely. Whenever you create keys, you should write down the password you use to create them. This is because you will need the password to install the certificate on your Web server when you get it back from your CA. If you don't have this password, you will not be able to install your certificate. Enter @En5L%sh for the password, then enter the exact same value in the Confirm Password field. Leave the Bit Length at 1024, and click Next.