Client certificate musings

Katarina Eriksson gmym at coopdot.com
Sun May 24 11:33:17 BST 2020


Thomas Karpiniec <tkarpiniec at icloud.com> wrote:

> Where authentication is required, it should be done in-band via a password
> or username/password 10 responses as you noted, which is then
> associated on the server with the transient certificate.


Hello

It would be nice if we had a separate status code for password input, say
11. Simple clients could treat this as a 10, intermediate clients could
hide user input behind asterisks and advanced clients could ask to make a
call to the password manager (set up in advance) or whatever other
convenience system there might exist.

This has been mentioned before but I didn't want to dig through the archive
again. Sorry for the sidetrack.

-- 
Katarina

>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.orbitalfox.eu/archives/gemini/attachments/20200524/b2de3466/attachment.htm>


More information about the Gemini mailing list