I did of course google and I did find the site you linked, but it did not help me much, as I found no information what has to happen server-side (or links to such information). I understand that the key is generated, stored and a SignedPublicKeyAndChallenge POSTed to the server. I had not recognized that SignedPublicKeyAndChallenge is a standard format. After I found that out, it seems to be a bit clearer to me. I assume that the server then may generate a certificate for that key and send it back to the client. Firefox will then probably install the certificate as a SSL client cert and allow authentication.

However, if this does not happen, i.e. for some reason the key gets generated but the server fails to respond with a certificate, what will happen with the key? As I already said, I did not find any UI (or any way at all for that matter) for managing those keys, actually there seems no way to access or delete those keys at all. Is there?

Jan

--
Please avoid sending mails, use the group instead.
If you really need to send me an e-mail, mention "FROM NG"
in the subject line, otherwise my spam filter will delete your mail.
Sorry for the inconvenience, thank the spammers...
--
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to