Hi all, it seems that doing OpenSSL two-way authentication seems to raise a lot of unexplained issues, mainly to recent Openssl users. Why not creating a small document explaining step-by-step how to create both the client and server certificates, as well as the development of a sample client and server application with the appropriate comments in the code ? I can volunteer myself to produce such document, however I would need to get the appropriate support from users who have already solved this problem successfully... Other issue, why is it necessary to do c_rehash in the client certificate? Is it necessary to do it also in the server certificate? Does it applies also to windows ? Best regards to you all, _____________________________________________________________ Carlos Serrão [EMAIL PROTECTED] http://www.carlos-serrao.com DCTI - IS/IT Department IS/IT Research and Development ADETTI/ISCTE - Av.Forcas Armadas 1600-082 LISBOA Portugal Tel.: +351217903064/+351217903901 Fax: +351217935300 ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]