Co-signed certs? (was: Tunneling Client Certs)

2003-02-09 Thread Jason Haar
All this talk about trying to gateway client certs has got me thinking about something I saw last week in the PGP-8.0 docs. They have this concept of additional decryption keys. Apparently you can configure PGP so that even though you are the only one with your key-pair, when you encrypt a

Re: Co-signed certs? (was: Tunneling Client Certs)

2003-02-09 Thread Dr. Stephen Henson
On Mon, Feb 10, 2003, Jason Haar wrote: All this talk about trying to gateway client certs has got me thinking about something I saw last week in the PGP-8.0 docs. They have this concept of additional decryption keys. Apparently you can configure PGP so that even though you are the only one

Re: Co-signed certs? (was: Tunneling Client Certs)

2003-02-09 Thread Jason Haar
On Mon, Feb 10, 2003 at 02:25:31AM +0100, Dr. Stephen Henson wrote: Well for S/MIME enveloped data you can add additional certificates whose owner (i.e. the entity with access to the private key) can decrypt. Many S/MIME clients automatically make the message readable by the recpient (its silly