I just thought this group would be interested in following the thread on the blink user group
"(Pre-)Intent to Deprecate: <keygen> element and application/x-x509-*-cert MIME handling" https://groups.google.com/a/chromium.org/forum/#!topic/blink-dev/pX5NbX0Xack dropping those two features of the web without a good replacement would make TLS client certificate use in browsers immediately a lot more problematic. Whether the replacements are there is part of the debate. I am not sure yet how TLS 3.0 and HTTP2.0 are progressing for client authentication. Henry _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls