Trust Thawte?

August 22, 2005

Thawte proudly says everywhere on their site that 'it's a trust thing'. The question is can they be trusted?

Recently I signed up with thawte's reseller program. The sign up process was protected by SSL. These guys after all are the people who issue SSL certificates, code signing certificates and all kinds of other certificates that we have not even heard about.

When signing up you need to enter a username and password (duh obvious). The page is protected with SSL (equally obvious). What is not equally obvious is why they mailed me back my own password in the clear text.

Can an organization that wants to you spend all your money to secure your site and then promptly mails you account information over an insecure channel be trusted?


Posted by raditha at August 22, 2005 9:19 AM
Your Ad Here

 

Jabber  |  Linux  |  mySQL  |  PHP  |  Java  |  Site Map  |  Wiki

Downloads  |  About  |  Links  |  Contact  |  Home

 

Copyright © Raditha Dissanayake 2003 - 2007

Terms of Use  |  Privacy

 

 

August 2005
Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 31