FOAF+SSL - The Protocol
The user requests the page and, during the establishment of an SSL connection with the server, provides a self-signed certificate containing a pointer to the user's URI. The server 'dereferences' the user's URI and attempts to verify the public key of the client certificate against information at the user's URI. If the key is properly verified, the user's URI can be trusted as 'owned' by the user.