difference between mod_ssl & mod_digest

Posted on 2002-04-27
Last Modified: 2012-05-04
if i want to build a "Secure Website",which module should i use, mod_ssl or mod_digest.

as i know,mod_ssl could providing SSL connection through web,but every client should visit it by "https://xxxxxx",
right? if i edit my index.html to REDIRECT the visitor fro
m "" to "",the client sid
e would auto change normal connection to SSL connection ?

And,mod_digest would only encrypt the "stream code" during
the authorization,after succeed,any HTTP request would sti
ll use Normal "clear text" code to communicate,right ?

please answer my questions,it's very important to me,thank
s a lot.
Question by:wingboad
  • 4
  • 2
LVL 51

Expert Comment

ID: 6975365
https encryptes the complete stream
LVL 51

Accepted Solution

ahoffmann earned 50 total points
ID: 6976534
mod_digest simply changes the encryption mode from Basic to Digest for the authorization dialog (where Basic is a weak encryption).
To use Digest authentification, you need to load the module, and then replace AuthType Basic by AuthType Digest in your .htaccess.
Keep in mind that not all browsers support Digest.
SSL is the more reliable and more secure way.

Author Comment

ID: 6990747
but if i want our clients to use httpS,how could make them use it "tranparently" ? cause not all clients know to use to visit those "secure pages".
Give your grad a cloud of their own!

With up to 8TB of storage, give your favorite graduate their own personal cloud to centralize all their photos, videos and music in one safe place. They can save, sync and share all their stuff, and automatic photo backup helps free up space on their smartphone and tablet.

LVL 51

Expert Comment

ID: 6991612
assuming you administrate, either tell the web server to redirect any request to https, or place a index.html in corresponding directories which redirect

Author Comment

ID: 6992576
so,after the redirection,all clients' requests would be
httpS automatically,right ?
LVL 51

Expert Comment

ID: 6993057
if it is done by the server, yes

Expert Comment

ID: 9709163
Hey people,

No comment has been added in roughly 1 year, so it's time to clean up this TA.
I will leave a recommendation in the Cleanup topic area that this question
be PAQ'd and pts awarded to ahoffman.
Please leave any comments here within the next seven days.


EE Page Editor

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
CA single sign on 2 74
Do we need servers??? 5 190
More Than One Website On Same DMZ Server 3 54
Changing Antivirus for Corporatre Network 11 30
Every computer eventually fails. When that happens, your valuable data is only as safe as your current backup.
These days, all we hear about hacktivists took down so and so websites and retrieved thousands of user’s data. One of the techniques to get unauthorized access to database is by performing SQL injection. This article is quite lengthy which gives bas…
Sending a Secure fax is easy with eFax Corporate ( First, just open a new email message. In the To field, type your recipient's fax number You can even send a secure international fax — just include t…
Sending a Secure fax is easy with eFax Corporate ( First, Just open a new email message.  In the To field, type your recipient's fax number You can even send a secure international fax — just include t…

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now