[OpenID] OpenID Providers Invited to Join in an NSTIC Pilot Proposal

Eddy Nigg (StartCom Ltd.) eddy_nigg at startcom.org
Tue Feb 14 01:46:06 UTC 2012


On 02/13/2012 07:43 PM, From Francisco Corella:
> OK, that says you use keygen to generate a key pair in Firefox (an
> ActiveX control in IE).  But you still have to use JavaScript to
> import the certificate into the browser.  AFAIK that's the only way
> you can automatically import a certificate into the browser with
> current technology.  In Firefox you must be using
> crypto.importUserCertificates(), is that right?

No, that's wrong, we simply push the certificate to the browser in the 
correct format and headers. Browsers like Firefox know what to do with 
it in case it finds a valid key pair.


Regards
Signer: 	Eddy Nigg, COO/CTO
	StartCom Ltd. <http://www.startcom.org>
XMPP: 	startcom at startcom.org <xmpp:startcom at startcom.org>
Blog: 	Join the Revolution! <http://blog.startcom.org>
Twitter: 	Follow Me <http://twitter.com/eddy_nigg>


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20120214/051de995/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4506 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20120214/051de995/attachment.p7s>


More information about the general mailing list