This would be handled by JSSE. Look at the JSSE docs on java.sun.com. "Zerell.Mischa" <[EMAIL PROTECTED]> wrote in message news:[EMAIL PROTECTED] Hi, in which way do i have to configure Tomcat, that the installation uses Client-Authentication and checks in a Certificate Revocation List (CRL) whether the Client Cert is ok or not? Is there allready something implemented like OCSP-Requests? I canīt find anything in the documentation. Thanks Mischa Zerell
--------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]