Groups | Blog | Home
all groups > dotnet web services enhancements > january 2005 >

dotnet web services enhancements : Certificates for Digital Signing


gm0ney
1/13/2005 2:04:59 PM
Can someone give me direction on where to get, purchase, procure a
certificate (x.509) that will allow me to digitally sign a soap message?

I have successfuly tested using the test certificate that came with the WSE
2.0 SP2.

Now needing an authorized one.


When I go to a CA (Verisign), I only see certificates for SSL.

Maybe I'm misunderstanding how to get one?

I'm Confused?




g
Laura Papez
1/20/2005 4:03:03 PM
Hi,

Go to:
http://www.verisign.com/products-services/security-services/pki/pki-application/email-digital-id/page_dev004002.html

And click on the "Buy Now" button. Choose your browser and fill out the
details in the Enrollment Form. On this form you can select if you want a
60-day trail certificate or a one-year certificate.

Verisign don't refer to the certificate as an "x.509" but rather a "Digital
ID for Secure Email".

Hope this helps,

Laura.


[quoted text, click to view]
sabs
1/28/2005 6:22:12 AM
Laura,
It says "Your Class 1 Digital ID is bound to your validated email
address and can be used to digitally sign your email and receive
encrypted email." It nowhere mentions it can be used for digitally
signing SOAP requests.

Are you sure that this is the right one ?
Thanks
Sabari.


[quoted text, click to view]
Dilip Krishnan
1/28/2005 6:35:01 AM
Hello sabs,
Yes, in effect the cert should be able to digitally sign/encrypt the
messages

HTH
Regards,
Dilip Krishnan
MCAD, MCSD.net
dkrishnan at geniant dot com
http://www.geniant.com

[quoted text, click to view]

sabs
1/28/2005 7:19:56 AM
Thanks Dilip for confirming.
Sabari.
sabs
1/31/2005 6:18:40 AM
I was on the process of buying the certificate (its half way thru) and
it looks like the process has to be initiated and completed from the
same machine where the certificate has to reside. Without knowing this,
I had initiated the process from my desktop (buying the digital id for
emails) and since i received the instructions from verisign that the
process had to be completed from the same machine, i have not completed
it since the machine where the certificate has to reside finally is a
production server. The question is, can I complete the process and then
transfer the certificate to the production server without any hassle.
Verisign support says I can backup the certicate and then import it but
has anyone done that ?
Thanks
Sabari.

[quoted text, click to view]
AddThis Social Bookmark Button