D
D
DVoropaev2017-08-31 16:31:04
Digital certificates
DVoropaev, 2017-08-31 16:31:04

Why do we need paid SSL CAs?

Why do people buy ssl certificates when there are free CAs like Let's Encrypt?
What is their advantage? Are they more reliable? How?

Answer the question

In order to leave comments, you need to log in

2 answer(s)
B
Barmunk, 2017-08-31
@Barmunk

https://ru.godaddy.com/web-security/ssl-certificat...
Let's Encrypt issues (DV) SSL first level. The remaining (OV) SSL and (EV) SSL verify the domain and organization, which reduces the risk of forgery. Plus a green plate with the name.
icn-ssl-browers-security-03.png

C
CityCat4, 2017-08-31
@CityCat4

You will not believe, but there are such - legal entities :) And they have needs that exceed the capabilities of LE. LE issues certificates with very weak protection - it only checks the ownership of the domain (not to mention the fact that some script needs to be given access to configs). Therefore, trust in the certificate issued by LE - well, of course it exists ... but for a legal entity, having a certificate from LE is about the same as mail to mail.ru - it works, but get rid of the "three tables, two chairs" brand it'll be hard.
Recognized CAs are vigilant for their reputation - WoSign bent down when they found their jambs. Because in fact they are not selling a certificate (file), but confirmation by their reputation of the fact that this certificate belongs to this office

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question