Google moves Gmail to more secure HTTPS service
- 14 January, 2010 14:51
- Comments
At the risk of inconveniencing some users, Google has moved its Gmail to a more secure protocol. The timing of the action is seen as a response to Chinese hacking attempts against the online mail service.
Google had previously offered HTTPS access to Gmail as an option, but Tuesday said it has become the default and would be rolled out to users over the next several weeks.
HTTPS, which encrypts Web traffic, is more resource intensive and thus more expensive for Google to offer. The change was announced on the company's official blog, though without a mention of Google's dispute with China over e-mail hacking attempts.
"Using HTTPS helps protect data from being snooped by third parties, such as in public Wi-Fi hotspots," wrote Sam Schillace, Gmail engineering director.
"We initially left the choice of using it up to you because there's a downside: HTTPS can make your mail slower since encrypted data doesn't travel across the web as quickly as unencrypted data. Over the last few months, we've been researching the security/latency tradeoff and decided that turning HTTPS on for everyone was the right thing to do."
HTTPS stands for Hypertext Transport Protocol Secure. It is intended to prevent eavesdropping and so-called man-in-the-middle attacks on information as it traverses the Internet.
Default HTTPS use on Gmail will protect confidential business information, which HTTP doesn't attempt to accomplish. This is important to business users, especially those Gmail users whose business includes campaigning for human rights in China.
HTTPS is the connection protocol already used by financial institutions and other organizations that require secure connections to Web pages and applications. URLs for these connections begin HTTPS://.
For most users, the change should be smooth and perhaps even go unnoticed. However, users that are setup to use Gmail while offline could face trouble.
"If you use offline Gmail over HTTP currently, the switch to HTTPS is likely to cause some problems," the company warned. It offered a link to a page offering instructions for working around the issue.
My take: Though Google's reputation is justifiably tarnished by its near clueless handling of the Nexus One smartphone introduction, it's handling of the China issue--and willingness to sacrifice perhaps billions in long-term revenue--shows Google takes protecting its customers most seriously.
The Nexus One flap will eventually blow over. But, among those who pay attention, Google's noble defense of its customers will be remembered for a very long time.
David Coursey has been writing about technology products and companies for more than 25 years. He tweets as @techinciter and may be contacted via his Web site.
- Bookmark this page
- Share this article
- Got more on this story? Email Computerworld
- Follow Computerworld on twitter
- Stories About Google Inc. - PC World
- Stories About Google Gmail - PC World
- Official Gmail Blog: Default https access for Gmail
- Google Could Leave China over Censorship, E-mail Attacks - PC World Business Center
- Google Online Security Blog: HTTPS security for web applications
- HTTP Secure - Wikipedia, the free encyclopedia
- Man-in-the-middle attack - Wikipedia, the free encyclopedia
- Problems with HTTPS and Offline - Gmail Help
- Nexus One Fiasco Continues for Google - PC World Business Center
- @techinciter
- David Coursey Consulting: Contact David Coursey
- Oracle Business Intelligence and Data Warehousing From Storage to Scorecard
- The Pathways ICT Leadership Development Program | Turning today’s ICT professionals into tomorrow’s business leaders | 2012 Course Curriculum
- Better Insights and Alignment with Business Intelligence and Scorecards
- Transforming Software Delivery: An IBM Rational Case Study
- Sanmina-SCI | Webcast
- iPhone 5 rumour rollup for the week ending February 10
- 3D mapping revives underwater city
- Academic challenges Turnbull over NBN satellite criticism
- What are you saying: Telstra’s customer service slowly improving, SA minister urging Facebook to overturn its photo ban
- In pictures: Capgemini opens new Canberra office
-
Maingear's six-core laptop has 1.8TB of SSD storage
-
After Megaupload shuts, BTJunkie follows
-
Windows Event Viewer phishing scam remains active
-
NeuroSky MindWave: Fun with Brainwaves
-
20 popular Ubuntu Linux apps you may want to try
-
Office 2007 for Dummies
-
Computers for Seniors for Dummies, 2nd Edition
-
Office 2007 All-In-One Desk Reference for Dummies
-
Microsoft Office
-
Teach Yourself Visually Windows 7
-
Windows 7 for Dummies® Dvd+book Bundle
-
Windows 7 for Seniors for Dummies®
-
Windows 7 for Dummies®
-
Excel 2007 All-In-One Desk Reference for Dummies












Comments
Post new comment