[cryptography] Client TLS Certificates - why not?

James A. Donald jamesd at echeque.com
Wed Mar 6 21:05:04 EST 2013


James A. Donald" <jamesd at echeque.com> writes:
>> The key, and the hash of the key, is a long string of random
>> gibberish.  It should not be visible to end users.  Experience
>> demonstrates that showing it repels 99% of end users.
On 2013-03-06 9:33 PM, StealthMonger wrote:
>
> Merchant includes its telephone number in every advertisement and 
> repeatedly admonishes prospects to call.

That is a short string of gibberish.
> Your only argument is that the key ID is "longer" or more "random".

Exactly so.




More information about the cryptography mailing list