Arshad Noor wrote:
>Does anyone know how to have a browser retrieve an HTML page
>embedded with a PKCS7 blob in it, but the signature is for
>the HTML page itself? The goal is to have the browser validate
>the contents of a "signed" page without having to use an SSL
>connection (much as Messenger validates the signature on a
>signed S/MIME message). TIA.
>
I know this has been discussed before, about a year or more ago. (Back
then, there was no S/MIME implementation in Mozilla IIRC, which might or
might not be relevant.) Check the archives of .crypto and .security anyways.