[SSL Observatory] offtopic: sites with client certificate authentication

Hanno Böck hanno at hboeck.de
Tue Aug 16 15:15:29 PDT 2011


Am Tue, 16 Aug 2011 07:54:51 +0800
schrieb Crypto Stick <cryptostick at privacyfoundation.de>:

> Hi!
> When it comes to secure logins, client certificate authentication is a
> nice feature of SSL/TLS to get rid of usernames and passwords. For
> instance certifi.ca is an useful OpenID provider allowing such login.
> It can be used in conjunction with the USB Crypto Stick [1] (or other
> smart cards) allowing secure login from any computer.
> 
> I'm looking for other public websites which offer client certificate
> authentication but couldn't find many. Do you know any such websites,
> lists of such websites, or does even the data gathered by SSL
> Observatory contain these information? In the later case, is the data
> available and how to use it?

CAcert uses it optionally, at StartSSL it's mandatory. My small
webhosting company also uses it ( http://schokokeks.org )

-- 
Hanno Böck		mail/jabber: hanno at hboeck.de
GPG: BBB51E42		http://www.hboeck.de/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: not available
URL: <http://lists.eff.org/pipermail/observatory/attachments/20110817/748d167b/attachment.sig>


More information about the Observatory mailing list