I haven't tried it, but it's certainly meant to. The name of the user should be in the CN attribute of the subject certificate. :wes On 09 Sep 2008, at 08:58, Johannes Rußek wrote: > so cyrus does support ssl client certificates (otherwise there > wouldn't > be errors such as "TLS server engine: No CA file > specified. Client side certs may not work"), but can i use client > certs > as a replacement to username/password logins? e.g. use the cert to map > the x509 subject to the username of the user? ---- Cyrus Home Page: http://cyrusimap.web.cmu.edu/ Cyrus Wiki/FAQ: http://cyrusimap.web.cmu.edu/twiki List Archives/Info: http://asg.web.cmu.edu/cyrus/mailing-list.html