How to configure secure RESTful services with WCF using username / password + SSL


I'm looking to write a config file that allows for RESTful services in WCF, but I still want the ability to 'tap into' the membership provider for username/password authentication.

The below is part of my current config using basicHttp binding or wsHttp w/out WS Security, how will this change w/ REST based services?

            <binding name="wsHttp">
                <security mode="TransportWithMessageCredential">
                    <message clientCredentialType="UserName" negotiateServiceCredential="false" establishSecurityContext="false"/>
            <binding name="basicHttp">
                <security mode="TransportWithMessageCredential">
                    <message clientCredentialType="UserName"/>
            <behavior name="NorthwindBehavior">
                <serviceMetadata httpGetEnabled="true"/>
                <serviceAuthorization principalPermissionMode="UseAspNetRoles"/>
                    <userNameAuthentication userNamePasswordValidationMode="MembershipProvider"/>

Here's a podcast on securing WCF REST services with the membership provider: