for OpenSSH and TLS key-based authentication. OpenPGP keys are
tracked via GnuPG, and added to the authorized_keys and known_hosts
files used by OpenSSH for connection authentication. Monkeysphere can
-also be used by a monkeysphere validation agent to validate TLS
-connections on the web.
+also be used by a validation agent to validate TLS connections
+(e.g. https).
\fBmonkeysphere\fP is the Monkeysphere client utility.
for OpenSSH and TLS key-based authentication. OpenPGP keys are
tracked via GnuPG, and added to the authorized_keys and known_hosts
files used by OpenSSH for connection authentication. Monkeysphere can
-also be used by a monkeysphere validation agent to validate TLS
-connections on the web.
+also be used by a validation agent to validate TLS connections
+(e.g. https).
.SH IDENTITY CERTIFIERS
examples:
.TP
.B ssh:
-ssh://host.full.domain[:port]
+ssh://host.example.com[:port]
.TP
.B https:
-https://host.full.domain[:port]
+https://host.example.com[:port]
.SH AUTHOR
example, the operator of `https://example.net' may wish to add an
additional servicename of `https://www.example.net' to the certificate
corresponding to the secret key used by the TLS-enabled web server.
-`add-name' or `n+' may be used in place of `add\-hostname'.
+`add-name' or `n+' may be used in place of `add\-servicename'.
.TP
.B revoke\-servicename SCHEME://HOSTNAME[:PORT] [KEYID]
Revoke a service-specific user ID from the specified certificate.
-`revoke-name' or `n\-' may be used in place of `revoke\-hostname'.
+`revoke-name' or `n\-' may be used in place of `revoke\-servicename'.
.TP
.B add\-revoker REVOKER_KEYID|FILE [KEYID]
Add a revoker to the specified OpenPGP certificate. The revoker can