The Shortcut Guide to Certificates in the Enterpriseby Don Jones
Do you use digital certificates? Not just utilize SSL certificates for Web servers but really use digital certificates in your enterprise? The many ways in which certificates can be employed to improve security, stability, reliability, and more are amazing—and what's equally amazing is how few businesses really leverage these simple, powerful tools.
In The Shortcut Guide to Certificates in the Enterprise, author Don Jones shows you all the ways that certificates can help easily solve common challenges, explains what certificates are and how they work, and offers creative ideas for using certificates effectively.
Chapter 1 : Digital Certificates Crash Course
Digital certificates are becoming more and more prevalent throughout todayâ€™s enterprises, and for good reason: In many cases, they offer the opportunity for better security, less complexity, and an overall more stable and trustworthy IT environment. In many ways, theyâ€™re a magic bullet for some of ITâ€™s longest-standing and trickiest problems, although certificates sometimes seem like one of the most-overlooked and often-ignored technology solutions out there. If youâ€™ve never looked at digital certificates before, now is definitely the time: More technologies are using them in more ways, and the sooner you start taking advantage of them, the better off youâ€™ll be.
In this guide, Iâ€™ll be introducing you to digital certificates and their place within the enterprise. In this chapter, Iâ€™ll begin with an introduction to digital certificates and how they work; if you thought that they were just for encrypting email and Web server traffic, then you may be in for a bit of surprise. In Chapter 2, weâ€™ll look at the many ways in which digital certificates are used within a modern enterprise, including some familiar ways and some that might surprise you. In Chapter 3, weâ€™ll dive deep into the issue of certificate trust and explore the real value of a certificate (it isnâ€™t encryption, believe it or not) as well as the responsibilities of someone who issues certificates (whether itâ€™s someone internal to your enterprise or a commercial partner). Finally, in Chapter 4, weâ€™ll cover some of the â€œgotchasâ€ surrounding certificatesâ€”the things that can come back to bite you if you donâ€™t know about them.
Now, letâ€™s jump in and see what certificates are, and how they work.
Chapter 2: The Many Faces of Digital
Weâ€™re all accustomed to digital certificates when theyâ€™re used to identify and secure the connection to a Web serverâ€”â€œSSL certificates,â€ although that name is technically a bit inaccurate, as weâ€™ll discuss in a moment. But certificatesâ€™ usefulness goes far beyond Web servers and the HTTPS protocol. In fact, in many ways, certificates have always held the solution for some of ITâ€™s most irritating and difficult challenges. Want to eliminate malware? Try using certificates. Want to be compliant with some piece of legislation? Certificates can help. Trying to find a way to authenticate business partners to an extranet? Yes, certificates offer a solution.
Certificates have been around for a long time, and you might not even be aware of the ways in which they already help you solve tricky problems. In this chapter, weâ€™ll start with some of the most common usesâ€”ones that youâ€™re probably already familiar withâ€”just so we can be comprehensive. Weâ€™ll then go beyond those common uses and start talking about some of certificatesâ€™ lesserâ€known capabilities in the enterprise.
Chapter 3: Trust, Trust, Trust—the Root of a Useful Certificate
In previous chapters, Iâ€™ve written briefly about the role that trust plays in digital certificates, and how digital certificates are essentially ID cards. In this chapter, weâ€™re going to dive into that concept in a lot more depth, and really illustrate how certificates work from a trust perspective.
Chapter 4: Certificate "Gotchas"—What You Don't Know Will Hurt You
Iâ€™m always running into administrators and users who have "given up" on certificates because theyâ€™ve run into troubles with them. Thereâ€™s no question that certificates can be a bit complicated, and there are definitely a few "gotchas" that can make them seem even more complicated-and even annoying. In this chapter, weâ€™ll explore some of the more common certificate snags, and look at ways of avoiding them entirely.