1. When my client browser receives the certification from a public trusted site(such as online bank) , the public key will include in it, will my browser send the certification back to CA ( such as verisign) to verify it?
I mean is there any communication between the CA and server or client during this process?
2. for the district restriction, I know that the 128 bit DES althorigm is forbidden to export out of US and Canada, so does it mean it is impossible to download the 128 bit encryption support of IE in China?
How to implement it, though IP? And if I move my computer with 128 bit equipped IE back to China, what will happen?
Thank you so much
I mean is there any communication between the CA and server or client during this process?
2. for the district restriction, I know that the 128 bit DES althorigm is forbidden to export out of US and Canada, so does it mean it is impossible to download the 128 bit encryption support of IE in China?
How to implement it, though IP? And if I move my computer with 128 bit equipped IE back to China, what will happen?
Thank you so much