Dirk Meyer wrote:
I can see value in using password to authenticate once and then creating a stronger credential (certificate).I have an additional question: do you think this is a useful?
And your proposal is simpler than possible alternatives because it doesn't require dealing with CSR, etc.
