[Modules] Using OpenPGP for server and client authentication?

Daniel Clark dclark at pobox.com
Sat Feb 13 00:24:29 EST 2010


Issue 0000096: mod_gnutls does not accept client OpenPGP certificates
which have no expiration  - http://issues.outoforder.cc/view.php?id=96
- seems to suggest that there is some way either converting OpenPGP
keys into pkcs12 (.p12) for import into web browsers or a web browser
plugin similar to the one used by http://www.gpgauth.com that would
allow one to log in to a web site using the private key located on the
computer a user owns (in conjunction with apache + mod_gnutls or
another web server using gnutls running on the server); but I've been
unable to find any other documentation on that, or even indication
that it is possible.

Is there some way of doing this someone could expound upon?

If not, does anyone know of any projects other than gpgauth that make
this possible for web browsers, either directly or in the manner
http://web.monkeysphere.info/ allows the OpenPGP web of trust to be
used for SSH logins?

Thanks for any insights,
-- 
Daniel JB Clark | Free Software Activist | http://pobox.com/~dclark


More information about the Modules mailing list