[800] in cryptography@c2.net mail archive
Re: SET vs SSL
daemon@ATHENA.MIT.EDU (Eric Young)
Mon May 12 11:05:02 1997
Date: Mon, 12 May 1997 12:47:11 +1000 (EST)
From: Eric Young <eay@cryptsoft.com>
To: "A. Padgett Peterson P.E. Information Security" <PADGETT@hobbes.orl.mmc.com>
cc: cryptography@c2.net
In-Reply-To: <970510183025.2061e6b9@hobbes.orl.mmc.com>
On Sat, 10 May 1997, A. Padgett Peterson P.E. Information Security wrote:
> I like SSL (particularly v3 which authenticates both ends) for taking my
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
Just a minor gripe. SSLv2 does support client authenticaion. This was
not some great new feature of SSLv3. The problem was that the most popular
implementations (netscape, MSIE) did not have client auth in the applications
that only suported SSLv2. netscape 3.x does client auth using SSLv2.
eric