On Thu, 21 Dec 2000, Carl Troein wrote:

> I just joined this list after looking through old mails about MiamiSSL, but
> I haven't been able to find anything useful on how to add new
> certificates. I've been able to get the host's RSA keypair (I have root
> access), and when I place the secret(?) key in miami:ssl/v2certs things
> start to work a bit. At least miamissl and miamisslclient open the file.
> As for my private certificate (we're using SSL to verify clients), I've
> managed to get it to work in miamisslclient when I renamed my PEM
> file to "-cert" and gave "-cert <anything>" as command line args. (Yep,
> there seems to be a bug in the command line parsing in miamisslclient..)
> However, I can't get it to work from IBrowse. According to snoopdos,
> miamissl doesn't seem to be at all interested in locating my certificate.
> I've spent most of the day trying to get this to work, so if nobody can
> tell me what to do, I guess I'll have to use NetScrape on Windoze instead.

I don't think it expects to use SSL to authenticate the client, even
though this is permitted by SSL.  Even if this is supported by MiamiSSL,
there would probably need to be some way to tell IBrowse to do it.
Usually browsers aren't used in ways that require client authentication.

I remember when MiamiSSL first came out, Holger mentioned that it wasn't
complete for use by servers, particularly in the area of key management
tools.  The same thing might apply to clients if client authentication is
an issue.

                                        Fred Wright

-- 

To unsubscribe send "unsubscribe miami-talk-ml" to
"[EMAIL PROTECTED]". For help on list commands send "help" to
"[EMAIL PROTECTED]".


Reply via email to