Skip to content
TopicTracker
From utcc.utoronto.ca/~cksView original
TranslationTranslation

Ignoring missing TLS "Client Authentication" usage in practice

Google is requiring Certificate Authorities to stop issuing TLS certificates for client authentication, and Let's Encrypt isn't planning to create new roots for this purpose. However, servers can still validate TLS certificates presented by clients even without the proper client authentication EKU, and many projects are starting to accept TLS server certificates from clients instead.