Kristofer A. E. Peterson wrote:
>
> While we're on this topic, is it possible to configure Apache-SSL to only
> request client authentication for certain directories and URL's? As far as
> I can tell, you can only specify client authentication for an entire server
> (or virtual server.)
Difficult since the server don't know the URL during the initial handshake.
It would be posisble to start a renegotiation after the requested URL is
known and insist on getting a client cert but I guess that would bring up
lots of problems and incompatibilities...
--
read you later - Holger Reif
------------------------------------ Signaturprojekt Deutsche Einheit
TU Ilmenau - Informatik - Telematik (Verdamp lang her)
[EMAIL PROTECTED] Alt wie ein Baum werden, um ueber
Remus.PrakInf.TU-Ilmenau.DE/Reif/ alle 7 Bruecken gehen zu koennen
+-------------------------------------------------------------------------+
| Administrative requests should be sent to [EMAIL PROTECTED] |
| List service provided by Open Software Associates, http://www.osa.com/ |
+-------------------------------------------------------------------------+