22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Figure 6-28 Flow of certificates and S/MIME messages<br />

The steps required to request a client certificate into an S/MIME client, as shown<br />

in Figure 6-28, are the following:<br />

1. From within the S/MIME-capable messaging client, the user requests a client<br />

certificate. The browser used in conjunction with the messaging client will<br />

prompt the user to fill in a client certificate request form at the Web site of a<br />

trusted certificate authority.<br />

2. a. As the request is being submitted, it will trigger the browser to generate and<br />

store a private key locally. (This process tends to differ from browser to<br />

browser, so it is best to read the documentation for your particular browser<br />

for the specifics of how this is done.)<br />

b. A corresponding public key is included in the HTTP header as part of the<br />

certificate request (in PKCS #10 format) to the Web CA.<br />

Chapter 6. Public key infrastructures 275

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!