ssl usage

Is it possible to use XKMS to manage SSL client certificate validation? If so I have a question
about the UseKeyWith Identifier semantics.

Upon registration, I assume I would

- not specify KeyUsage (since it really isn't for signing or encryption per se)
- and would not know how to use UseKeyWith because the SSL UseKeyWith Application assumes
a server side identifier.

I would like to limit the client certificate to SSL only. How can I do this? 
(I realize that this is not a ds:KeyInfo application, but am thinking how an XKMS server 
would be beneficial beyond XML security applications)

regards, Frederick
 
Frederick Hirsch
Nokia Mobile Phones

Received on Thursday, 5 December 2002 11:22:38 UTC