Certificates
There are three kinds of certificates: server certificates, authority certificates and
user certificates.
• Server certificates
The phone uses a server certificate to create a secure connection to the WAP
service provider. The phone receives the server certificate from the service
provider before the connection is established and its validity is checked using
the authority certificates saved in the phone. Server certificates are not saved.
The phone indicates if the identity of the WAP server or WAP gateway cannot
Me
n
u
fu
ncti
o
n
s
131
Copyright
2003 Nokia. All rights reserved.
be verified, if the WAP server or WAP gateway certificate is not authentic or if
you do not have the correct authority certificate in your phone.
The security indicator
is displayed during a WAP connection, if the data
transmission between the phone and the WAP gateway or WAP server
(identified by the
IP address
in the
Edit active service settings
) is encrypted.
However, the security indicator does not indicate that the data transmission
between the gateway and the content server (place where the requested
resource is saved) is secure. It is up to the service provider to secure the data
transmission between the gateway and the content server.
• Authority certificates
Authority certificates are used by some WAP services, such as banking services,
and for checking the validity of other certificates. Authority certificates can
either be saved in the security module by the service provider, or they can be
downloaded from a WAP site, if the WAP service supports the use of authority
certificates. If you save the certificate, it is added to the certificate list in the
phone. Authority certificates may also be available in the security module.
• User certificates
User certificates are issued to users by a Certifying Authority. User certificates
are required, for example, to make a digital signature and they associate the
user with a specific private key in a security module. User certificates are saved
in the security module by the service provider or you can download them to
your phone from a WAP site, if supported by the security module of the SIM
card.
Me
n
u
fu
ncti
o
n
s
132
Copyright
2003 Nokia. All rights reserved.