Kristofer A. E. Peterson wrote:
> 
> While we're on this topic, is it possible to configure Apache-SSL to only
> request client authentication for certain directories and URL's? As far as
> I can tell, you can only specify client authentication for an entire server
> (or virtual server.)

Difficult since the server don't know the URL during the initial handshake.
It would be posisble to start a renegotiation after the requested URL is
known and insist on getting a client cert but I guess that would bring up
lots of problems and incompatibilities...

-- 
read you later  -  Holger Reif
------------------------------------ Signaturprojekt Deutsche Einheit
TU Ilmenau - Informatik - Telematik                (Verdamp lang her)
[EMAIL PROTECTED]          Alt wie ein Baum werden, um ueber
Remus.PrakInf.TU-Ilmenau.DE/Reif/    alle 7 Bruecken gehen zu koennen
+-------------------------------------------------------------------------+
| Administrative requests should be sent to [EMAIL PROTECTED] |
| List service provided by Open Software Associates, http://www.osa.com/  |
+-------------------------------------------------------------------------+

Reply via email to