Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Give clients and servers the ability to correlate via certificate_request_context? #28

Open
egorbaty opened this issue Aug 19, 2023 · 0 comments
Labels
discussion Discussion about an issue

Comments

@egorbaty
Copy link
Owner

egorbaty commented Aug 19, 2023

David Benjamin has noted in conversation that Chrome requires the ability to tell which certificate is used for a given request, even just for a UI feature that shows the certificate used. He has noted there might be other cases where clients and servers need to be in agreement about what certificate was used.

Presumably the server can choose to fill the certificate_request_context with some identifier that can be used to make these correlations. Not yet sure how the client would go about communicating this if the server needed to know what cert the client is using (if the server, for example, issued multiple certificates for the same ORIGIN...?)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
discussion Discussion about an issue
Projects
None yet
Development

No branches or pull requests

1 participant