what he means is that to safely transport the data to the server...SSL will encrypt the data...however note that many SSL certificates will encrypt at the browser capablities...therefore if the user uses an old browser and that browser supports only 40bit encryption, that is much easier to crack than 128 bit encryption...you can get certs ( and there fore SSL capablities that only encrypt at 128) but you will then need to detect the user encryption capabilities and force the user to upgrade the browser to the higher level...

so depending on the data...SSL is the best way to do it... the level is something that you will need to decide on...up to 128 or 128 only...most banking type apps and the newer shopping apps require the higher encryption...


