Security on web pages (SSL)

Escrito por EmilioMurias |17 Jan 19 |

Security on web pages (SSL)

Today I will talk about security in the web. It is something that we all care. Is our site secure? How do you see our visitors? One of the measures that are often taken is to install an SSL Certificate. Let’s see what it is:

The Secure Sockets Layer (SSL) is a cryptographic protocol that provides secure communication that takes place on the web. SSL certificates are essential and necessary for e-commerce sites, due to the secure transmission of confidential information such as credit card numbers and personal information of customers. All websites need protection, and SSL is still one of the safest forms available.

Let’s take an example in real life: when we ask whether a person is called Pepe Juan Lopez Perez (for instance) can trust that a person is who he says. How confident is he? With your ID. If official documentation shows that we have no doubts. Well, the Internet is the same. You need an “identity card” for servers, an “official” document that will ensure that the server is the real and not an impostor. The question is how we make it official: we need an authority us to trust. The solution to this problem is the SSL certificates, which more than a document as the DNI are seals. They have a private party, which the server runs, with which “seals” and leaves a signature in communications. The seal contains the domain name and certifies that you’re securely communicating with Google. Besides, no one else can replicate it: you can not take a document, cut the seal and paste it into another document. Likewise, an attacker can not intercept a request to a server, modify it and reenviártela because then the “seal” (signature) would be invalid. SSL certificates are signed by certification authorities (CA) or trusted third parties. These authorities are responsible for issuing licenses, and only do so if the organization or person who asks can prove that is indeed the domain owner. If we think for example in a house: When an alarm is activated always it works as a deterrent. Normally the pirates will try to enter another house without alarm. They do not want any major problems. Therefore a website with an SSL Certificate will always generate confidence. We discussed that upon entering the website and we see technology implemented to officially establish that it is in that web has security.

How to tell if a Web site is using SSL?

While the details of the SSL protocol are not shown to visitors, most browsers will display a lock or some other form of identification in the address bar. This will indicate if you are currently protected by an SSL encrypted session. If you want to see the details of the SSL certificate, you can simply click on the padlock.


How to improve your SEO positioning with SSL

Search engine optimization or search engine optimization is the process of improving the visibility of a website in the organic results of different search engines. It is also common to name it by its English title, SEO (Search Engine Optimization).

On August 7, under the slogan “Let the Web Safer” Google officially announced that use a secure connection under the security protocol https: // (which is achieved by a SSL certificate) increases the chances of improving the positioning a website in search results. She also noted that in the not too distant future the use of security protocols SSL (https) will be an important and additional signal in all the factors that are contemplated at the time of the website optimization.

Google is rewarding greater security, by revising their algorithms to reward SSL users.

In short, this means that if users can connect to your website over HTTPS, you will have a higher ranking in Google search results.

What other factors helps me a SSL Certificate?

There are many factors that go to secure protocols. Obviously we have seen that it is security, confidence, official accreditation, improved SEO …

Also there are very important factors such as:

In Spain we have a Data Protection Act to meet online. As companies have to comply with these obligations (which are made precisely for protection for users), you have to deploy on the web. Therefore SSL is just an ally when it comes to complying with the laws of the country. We talked about that when a customer send your name, email, phone, race, sex, religion, credit card number, address where you live, pictures … are data. Therefore nothing better to protect these data have a protocol to ensure that the connection is secure and that the website is trustworthy.

Furthermore, this protocol is necessary to accept payments online. Therefore the online retailers have to have these systems. Many of them only apply whenever the customer will pay. But why not when you enter data on the shipping address, name, email. etc? They should be completely safe since the user accesses the web until it leaves.

All this increases the safety of customers. This makes that translates into greater chance of having to sell online. That is, there are more opportunities to increase sales.

Another important feature is protection against phishing. Having an SSL Certificate prevents the damage data theft can cause you to your company (our SSL certificates are secured with financial guarantees), thus preventing your company’s reputation will be seriously damaged.

Finally, note that the SSL Certificates perform scans on its website to detect and remove malware, once again making your website to be sure. When we talk about these programs we refer to malware and virus.

Of course there are other additional safety systems. But keep in mind that this system shows every visitor a level of security. The rest “shadow” must also be. But that is not seen. What the user sees is really closed padlock and green web with https: //