I know I could google it, but if you have -done- it before and can explain how the private key is secured on the client machine in about a paragraph, you saved me some time. Im not thinking about implementing it (yet...), I just kind of want a general idea of what its all about.
OK fine, I'll go google it too...

But if you have experience with it I wouldnt mind getting a little intro to it.
Thanks.