[SSL Observatory] offtopic: sites with client certificate authentication

Ralph Holz holz at net.in.tum.de
Tue Aug 16 03:06:23 PDT 2011


Hi,

You might find some info in Ivan Ristic's data set. Slides of his talk
are here:

http://blog.ivanristic.com/2011/05/a-study-of-what-really-breaks-ssl.html

I don't know if he's going to publish his data set or how, though.

Ralph


On 08/16/2011 01:54 AM, Crypto Stick wrote:
> Hi! When it comes to secure logins, client certificate authentication
> is a nice feature of SSL/TLS to get rid of usernames and passwords.
> For instance certifi.ca is an useful OpenID provider allowing such
> login. It can be used in conjunction with the USB Crypto Stick [1]
> (or other smart cards) allowing secure login from any computer.
> 
> I'm looking for other public websites which offer client certificate 
> authentication but couldn't find many. Do you know any such
> websites, lists of such websites, or does even the data gathered by
> SSL Observatory contain these information? In the later case, is the
> data available and how to use it?
> 
> Thanks and regards Jan
> 
> [1] http://crypto-stick.com/


-- 
Dipl.-Inform. Ralph Holz
I8: Network Architectures and Services
Technische Universität München
http://www.net.in.tum.de/de/mitarbeiter/holz/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 490 bytes
Desc: OpenPGP digital signature
URL: <http://lists.eff.org/pipermail/observatory/attachments/20110816/7c46ce8d/attachment.sig>


More information about the Observatory mailing list