Hi, Thank you Bear and Ted for your responses.
> On the server side, why not maintain a database of clients and > FQDNs or IP addresses? What you gain in flexibility should more > than offset the increased complexity in the code. This is one of the options I am considering and, indeed, it does seem the most suitable for our application. What feature of a certificate could I use to provide an unique key in a database table for this? How could this be extracted in a program? Cheers, Mark ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]