Re: FYI: proposal for client authentication in TLS

On 8 March 2014 15:56, Ilari Liusvaara <ilari.liusvaara@elisanet.fi> wrote:
> IIRC, for certificate selection, TLS sends DNs of acceptable certificate
> authorities. Of course, that won't help with self-signed client
> certificate...

True.  In cases where clients use self-signed certificates they have
a-priori knowledge, or something bound to the domain name or origin of
the server, that they use to select these certificates.

Received on Saturday, 8 March 2014 15:59:00 UTC