<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: SSL Vendor X, I love thee not</title>
	<atom:link href="http://eternallyoptimistic.com/2007/01/23/ssl-vendor-x-i-love-thee-not/feed/" rel="self" type="application/rss+xml" />
	<link>http://eternallyoptimistic.com/2007/01/23/ssl-vendor-x-i-love-thee-not/</link>
	<description></description>
	<lastBuildDate>Wed, 10 Aug 2011 17:44:16 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Mark Wahl</title>
		<link>http://eternallyoptimistic.com/2007/01/23/ssl-vendor-x-i-love-thee-not/comment-page-1/#comment-205</link>
		<dc:creator>Mark Wahl</dc:creator>
		<pubDate>Wed, 24 Jan 2007 23:10:44 +0000</pubDate>
		<guid isPermaLink="false">http://eternaloptimist.wordpress.com/2007/01/23/ssl-vendor-x-i-love-thee-not/#comment-205</guid>
		<description>Yep it sometimes seems strange to me that it can (for some issuers) even be easier for a one-person business to get an SSL certificate for a domain as a business than that individual to get an SSL certificate for a domain as an individual, as the business gives a layer of &#039;indirection&#039;, a persona for the individual that&#039;s at least partially under the individual&#039;s control.  For while governments tend to frown on individuals having multiple copies of a personal credential (such as a not wanting citizens to have multiple passports or driver&#039;s license simultaneously valid) or with different attributes, they seem to be happy with individuals creating as many businesses as they desire.   Let us know when you find a vendor willing to work with you in issuing you a SSL cert.</description>
		<content:encoded><![CDATA[<p>Yep it sometimes seems strange to me that it can (for some issuers) even be easier for a one-person business to get an SSL certificate for a domain as a business than that individual to get an SSL certificate for a domain as an individual, as the business gives a layer of &#8216;indirection&#8217;, a persona for the individual that&#8217;s at least partially under the individual&#8217;s control.  For while governments tend to frown on individuals having multiple copies of a personal credential (such as a not wanting citizens to have multiple passports or driver&#8217;s license simultaneously valid) or with different attributes, they seem to be happy with individuals creating as many businesses as they desire.   Let us know when you find a vendor willing to work with you in issuing you a SSL cert.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pamela</title>
		<link>http://eternallyoptimistic.com/2007/01/23/ssl-vendor-x-i-love-thee-not/comment-page-1/#comment-207</link>
		<dc:creator>Pamela</dc:creator>
		<pubDate>Wed, 24 Jan 2007 20:59:41 +0000</pubDate>
		<guid isPermaLink="false">http://eternaloptimist.wordpress.com/2007/01/23/ssl-vendor-x-i-love-thee-not/#comment-207</guid>
		<description>Hi Mark!

Businesses have to go through a different (but equally annoying) set of hoops.  They have to provide articles of incorporation, DUNS numbers, things like that.  I have run into issues before applying for company certificates, where we forgot to update our WHOIS record when we moved - we failed our &#039;automatic&#039; validation because the address we wrote on our CSR didn&#039;t match with the WHOIS database.  Come to think of it, that was the same SSL company... :)</description>
		<content:encoded><![CDATA[<p>Hi Mark!</p>
<p>Businesses have to go through a different (but equally annoying) set of hoops.  They have to provide articles of incorporation, DUNS numbers, things like that.  I have run into issues before applying for company certificates, where we forgot to update our WHOIS record when we moved &#8211; we failed our &#8216;automatic&#8217; validation because the address we wrote on our CSR didn&#8217;t match with the WHOIS database.  Come to think of it, that was the same SSL company&#8230; :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mark Wahl</title>
		<link>http://eternallyoptimistic.com/2007/01/23/ssl-vendor-x-i-love-thee-not/comment-page-1/#comment-206</link>
		<dc:creator>Mark Wahl</dc:creator>
		<pubDate>Wed, 24 Jan 2007 20:51:08 +0000</pubDate>
		<guid isPermaLink="false">http://eternaloptimist.wordpress.com/2007/01/23/ssl-vendor-x-i-love-thee-not/#comment-206</guid>
		<description>What manner of &#039;official document&#039;/&#039;real-world credential&#039; is the SSL issuer looking for with the matching address?
(For example, you mention a driver&#039;s license, but it&#039;s likely that a large business with a domain would have the business&#039; mailing address be on the WHOIS record, but the business&#039; employees would not have the company address on their driver&#039;s license).   Does your city or county government have a DBA registration database?</description>
		<content:encoded><![CDATA[<p>What manner of &#8216;official document&#8217;/'real-world credential&#8217; is the SSL issuer looking for with the matching address?<br />
(For example, you mention a driver&#8217;s license, but it&#8217;s likely that a large business with a domain would have the business&#8217; mailing address be on the WHOIS record, but the business&#8217; employees would not have the company address on their driver&#8217;s license).   Does your city or county government have a DBA registration database?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

