[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

SMTP/TLS: MTA certificate type



Hello,

since a typical MTA has both server and client capability, it
seems logical to me to have a single certificate with
X509v3_extensions mentioning both SSL server and SSL client
usage.

Apparently commercial CA's only deliver either server certificates or
client certificates however.

What are advantages/disadvantages of both schemes? Could the RFC
mention the combined usage possibility to convince CA's of the
need for server+client certificates?

Regards,

Frederik Vermeulen