iTP Secure WebServer System Administrator's Guide (Version 7.0)
Introduction to the iTP Secure WebServer
iTP Secure WebServer System Administrator’s Guide—523346-012
1-4
Features and Standards Supported by iTP Secure
WebServer
Provides a challenge/response authentication mechanism for additional security;
the user’s password is not sent over the network.
•
VeriSign’s Global Server ID
The iTP Secure WebServer (domestic-secure version) supports VeriSign's Global
Server ID, which enables 128-bit SSL sessions with browsers that offer
Step-Up/Server Gated Cryptography (SGC) capability. The Global Server ID
assures your visitors of your site's legitimacy. For more information about using
VeriSign’s Global Server ID with the iTP Secure WebServer, see Support for
International 128-Bit SSL Sessions Using VeriSign’s Global Server ID on page 4-5.
The iTP Secure WebServer also provides hardware support of 1024 bit key-length
certificates that you can use with Atalla’s WebSafe2 Internet Security Processors
(WISPS), including Global Server ID.
•
Certificate chains
The iTP Secure WebServer uses the SSL 3.0 protocol to allow you to send
certificate chains to and from clients. By using certificate chains, you can establish
a certificate hierarchy that is more than two certificates deep. Certificate chains can
be used by the iTP Secure WebServer for hardware encryption (using the
WebSafe2 unit) or for software encryption.
•
Session tracking and authentication
The iTP Secure WebServer includes built-in support for ticketing, a technique for
user-session tracking. The iTP Secure WebServer issues anonymous tickets.
You can use the iTP WebReporter log-analysis tool to generate reports detailing
user-access patterns.
•
Virtual hosts
The iTP Secure WebServer supports multiple domains within a single instance of
the iTP Secure WebServer, including the ability to return customized content
based on the destination domain name. Several configuration directives and
configuration directives options (for example, Region) are provided to support this
capability (for example, Accept).
•
Built-in clickable images
You can create image maps for clickable images, enabling users to easily navigate
to other pages.
Note. WISP is compatible only with systems running on G-series RVUs.
Note. The hardware encryption using the WebSafe2 unit is supported only on systems
running G-series RVUs.










