Server gated cryptography

Server gated cryptography

Server Gated Cryptography (SGC) was created in response to United States federal legislation on the export of strong cryptography in the 1990s.

The legislation had limited encryption to weak algorithms and shorter key lengths if used in software outside of the United States of America.

As the legislation included an exception for financial transactions, SGC was created as an extension to SSL, with SGC certificates only issued to financial organisations.

When an SSL handshake takes place, the software (e.g. a web browser) would list the ciphers that it supports.

Although the weaker exported browsers would only include weaker ciphers in its SSL handshake, the browser did also contain stronger cryptography algorithms.

To comply with the legislation, the browser would only renegotiate the handshake to use the stronger ciphers if the browser detected that the server has an SGC certificate.

This legislation has now been revoked and SGC certificates can now be issued to any organisation.

Internet Explorer used SGC with 40-bit and 128-bit encryption starting with patched versions of Internet Explorer 3, version 4, and version 5+.

External links

* [http://www.thawte.com/ssl-digital-certificates/technical-support/sgc/index.html Thawte's page on Server Gated Cryptography]
* [http://www.microsoft.com/technet/prodtechnol/WindowsServer2003/Library/IIS/78a7c37b-ec75-4ff3-a510-920f2f0b73aa.mspx?mfr=true Microsoft's page on Server Gated Cryptography]
* [http://www-uxsup.csx.cam.ac.uk/~jw35/courses/using_https/html/x746.htm University of Cambridge page on Server Gated Cryptography]


Wikimedia Foundation. 2010.

Игры ⚽ Поможем решить контрольную работу

Look at other dictionaries:

  • Windows 2000 Server — Infobox OS version name = Windows 2000 Server family = Microsoft Windows caption = Screenshot of Windows 2000 Server developer = Microsoft website = [http://www.microsoft.com/windows2000 www.microsoft.com/windows2000] first release date =… …   Wikipedia

  • Microsoft Media Server — (MMS) is the name of Microsoft s proprietary network streaming protocol used to transfer unicast data in Windows Media Services (previously called NetShow Services). MMS can be transported via UDP or TCP. The MMS default port is UDP/TCP 1755.… …   Wikipedia

  • Transport Layer Security — (TLS) and its predecessor, Secure Sockets Layer (SSL), are cryptographic protocols that provide secure communications on the Internet for such things as web browsing, e mail, Internet faxing, instant messaging and other data transfers. There are… …   Wikipedia

  • Internet Explorer 4 — Internet Explorer 4.0 Develop …   Wikipedia

  • Certificate authority — In cryptography, a certificate authority, or certification authority, (CA) is an entity that issues digital certificates. The digital certificate certifies the ownership of a public key by the named subject of the certificate. This allows others… …   Wikipedia

  • Internet Explorer 3 — Internet Explorer 3.0 in Windows 95 Developer(s) …   Wikipedia

  • Comparison of SSL certificates for web servers — The following table compares various features of SSL digital certificates on the market, used for securing communication with web servers. Comparison Certificate authority Product name Number of domains included Number of subdomains included Cost …   Wikipedia

  • SGC — StarGate Command (Governmental » Military) *** Server Gated Cryptography (Internet) *** Server Gated Cryptography (Computing » Security) * Sportscard Guarantee Corporation (Miscellaneous » Hobbies) * Star Gate Command (Miscellaneous » Science… …   Abbreviations dictionary

  • Internet Explorer — Windows Internet Explorer A component of Microsoft Windows Internet Explorer 9 in Wi …   Wikipedia

  • XMLHttpRequest — HTTP Persistence · Compression · HTTPS Request methods OPTIONS · GET · HEAD · POST · PUT · DELETE · TRACE · CONNECT Header fields Cookie · ETag · Location · Referer DNT · …   Wikipedia

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”