We are about to introduce client certificates for (optional) authentication.


SSLOptions +StdEnvVars +ExportCertData

SSLCACertificateFile conf/ssl.crt/ca.crt SSLVerifyClient optional 
SSLVerifyDepth 4 ...

Unfortunately Safari@mac has "problems" (apparently a bug) connecting to Apache 

Is there an alternative to the SSLInsecureRenegotiation flag?

What I'd like to do is something like

<If "%{HTTP_USER_AGENT} !~ /Safari/">

  SSLCACertificateFile conf/ssl.crt/ca.crt

  SSLVerifyClient optional

  SSLVerifyDepth 10


How "insecure" is the SSLInsecureRenegotiation flag?

Any help/advice appreciated

- Clemens

Reply via email to