Our product supports HTTPS, but a client wants us to encrypt login password to get end-to-end security even with HTTPS. He suggests using the public key from the HTTPS certi