💾 Archived View for rawtext.club › ~sloum › geminilist › 001095.gmi captured on 2020-10-31 at 02:02:46. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2020-09-24)

-=-=-=-=-=-=-

<-- back to the mailing list

Client certificate musings

solderpunk solderpunk at SDF.ORG

Wed May 27 22:11:51 BST 2020

- - - - - - - - - - - - - - - - - - - 

On Wed, May 27, 2020 at 11:07:47PM +0200, Petite Abeille wrote:

On May 27, 2020, at 20:58, solderpunk <solderpunk at SDF.ORG> wrote:
I never would have
imagined it would be literally impossible for a server using Python's
standard `ssl` module to accept a self-signed client certificate!
https://docs.python.org/3/library/ssl.html#ssl.CERT_REQUIRED

Yes, precisely:

With server socket, this mode provides mandatory TLS client cert
authentication. A client certificate request is sent to the client and
the client must provide a valid and trusted certificate.

Cheers,Solderpunk