Friday, March 11, 2011

Digital certificates can also be letters?


Not long ago, Shanghai 33-year-old Mr Choy in the Construction Bank of Internet banking card suddenly disappeared 16 million yuan, while the last case the bank's efforts in detection, but still so many people feel palpitations. It is said that the
This situation is not unusual, mainly because the banks issuing digital certificates through MSN and other real-time software tools being stolen, theft, fraudulent use of Mr Choy on behalf of such person into no man's land, swaggered to 160,000 yuan in multiple money taken away. This allows many users fear has always been known as the most secure digital certificate actually have such a big loophole, digital certificates can believe it? Investors heard a few years ago the capital account have been maliciously manipulated, the sale of some of the decrease in stock, so that assets are huge losses of events, these events have occurred in recent years, since the whole of this year, the stock market madness, the Internet stocks security issues become the focus of attention.

How safe is digital certificate

Digital certificates are used to sign and certify the identity of both the network communication of digital information file. Digital certificate has been considered the most secure online banking pass, than the traditional "account number + password" more protection. , "Electronic Signature Law of the PRC," The introduction of digital certificates to form legally recognized security technology into people's daily use in, CA electronic authentication services, PKI technology is people gradually so familiar.

Because of this, the end of 2006, China more than 40 million online banking users, the existing individual users using digital certificates 46%, 46.3% of business users in the digital certificate being used.

Digital certificate is like a gateway to online banking security locks, but if we are key to the lock placed anywhere, or do not lock when inserted in a long time, and paste the password lock next to the fancy takes the reader in the insurance, regardless of security locks What a strong and reliable, is useless.

Lack of financial Digital Certificate

Why use a digital certificate will also appear after the funds stolen events? This use of digital certificates and bank methods. Some commercial banks in consideration of the use of cost, online banking use cheap, non-secure storage of "soft digital certificate" that banks provide their own replication, can be saved in a computer or mobile device without security on the digital certificate Some certificates are free, some of the certificate fee only costs 20 to 30 dollars. As the soft digital certificates can be saved as files, Trojans still have the opportunity to copy the certificate, record the password, causing the user account is stolen, so that the certificate is unsafe, Shanghai, Mr. Cai is the case encountered.

Some banks realized the lack of soft certificate, and that he introduced a hardware certification, price from 60 yuan to 80 per month. But the risk still exists. Financial industry established itself as a digital certificate, in technically not professional, some without going through the relevant state department certification, equivalent of two further an athlete has the referee, to thoroughly ensure the native security certificate.

Digital certificates require third-party certification

The most secure digital certificate should be certified by a third party digital certificate, digital certificate stored in the technology by the State Board approved the certificate password storage medium, the user certificate used to insert the storage medium and enter the medium security
Protection code, for two-factor authentication; in the use of the process need to verify the existence of the certificate and valid, the signature / verification, encryption / decryption and other operations are carried out in the media operation, key file will not be transferred out medium; used up Unplug the certificate storage medium, the medium of the documents will not be saved on your computer, so users do not have to worry about hackers control or theft. Because secure digital certificate storage media can not be observed, not to copy features make the Trojans can not copy, effective protection of digital certificates.

"The People's Republic of China Electronic Signature Law" stipulates that "third-party certification of electronic signature required, from the electronic certification service provider to provide certification services," the letter can be given legal effect of the digital certificate shall be established by law, the electronic certification service provider presented. In the "Electronic Certification Services" in the provisions required under the law of electronic certification services in the electronic certification services with professional and technical personnel, operations management, security management and customer service staff; have a fixed place of business and to meet the requirements of electronic certification services physical environment; comply with national safety standards with the technology and equipment, mandatory targets, to ensure that a digital certificate issued by the rigorous review of data, real credible, and legitimate position of CA is also a neutral third-party technology and the law to protect users interests. Currently available, "Electronic Authentication Service License" in the online security of electronic transactions with the authority and impartiality of the trusted third party CA National legitimate only 21.

Such certificate may be the price at 100 yuan, but received the official professional certification, from the security get a great guarantee. Financial sector need to be further co-operation with third-party CA center can completely guarantee the safety of users of funds.










Wizard Personal INTEREST



College STUDENT hidden hard to guarantee the right to life and health worries



The birth of kissing fish



the ps3 ylod fix the yellow light of death



Prerelease download ATi Catalyst 5.5



Zen MOZAIC Converter



Describe The C # Call An External Process



RM TO AVI



IFO file Converter



Storage Inventory And Barcoding



Using De exterminate rabbits annoying ads RMVB movies