Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.computer.security
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-21-2008, 11:44 AM
toralf
Guest
 
Posts: n/a
Default more than only one certificate per server

Hello,


We serve at work many customers within a client/server architecture
and would like to have different certs for different customer - but
we've only one server where all customers connect to.

Therefor I'm wondering, whether it is possible for a server providing a
SSL connection to its web service to accept more than only one
certificate.

--
MfG/Sincerely

Toralf Förster
pgp finger print: 7B1A 07F4 EC82 0F90 D4C2 8936 872A E508 7DB6 9DA3



Reply With Quote
  #2 (permalink)  
Old 06-21-2008, 08:07 PM
Felix Tiede
Guest
 
Posts: n/a
Default Re: more than only one certificate per server

toralf wrote:

> Hello,
>
>
> We serve at work many customers within a client/server architecture
> and would like to have different certs for different customer - but
> we've only one server where all customers connect to.
>
> Therefor I'm wondering, whether it is possible for a server providing a
> SSL connection to its web service to accept more than only one
> certificate.
>


A web service using SSL/TLS can accept more than one client certificate,
f.ex. one for each customer. If your web service supports specifying
certification authorities to sign client certificates (like apache does),
you can create a CA to sign client certificates. This would enable you to
issue new client certificates without reconfiguring your web service. And
if you can specify certificate revocation lists as well, you can also
revoke certificates without reconfiguration. But this depends on what the
server behind your web service supports.

What a web service can't do is present different server certificates to each
customer, except each customer would use his own IP/Port combination.

Hope it helps,
Felix Tiede

Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Doctor Who's security & encryption FAQ v21.4 newsmanis@yahoo.com.au alt.computer.security 0 10-10-2007 09:34 PM
Changing from peer-to-peer to server based environment JRC alt.internet.wireless 1 11-08-2006 05:40 PM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 10-19-2005 04:37 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 08-30-2005 04:26 AM
[SSL-Talk List FAQ] Secure Sockets Layer Discussion List FAQ v1.1.1 Shannon Appel comp.security.misc 0 07-31-2005 04:25 AM


All times are GMT. The time now is 05:14 PM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45