Does SSL_VERIFY_CLIENT_ONCE (in ssl/s2_srvr.c and ssl/s3_srvr.c) serve any actual purpose, that is, is it ever possible that when the server reaches the state where it may ask for a certificate, s->session->peer is not NULL? ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]