    Signature, certificates, public and private keys


      Hi All,


      I'm need help on key authentication.

      How does one know if really the priv ate key comes from the expected host.

      How do you "lock-down" a key to only one host/computer? so that if another person get hold of the private key by any chance, they wont be able to connect because the key wasn't created for their PC/host.


      I'm new to the keys and signatures authentication. Your help will be greatly appreciated.


      Thanks in advance.