On Mon, 13 May 2002, Franck Martin wrote: > I like to buy a certificate from verisign or thawte that allows me to > sign other certificates. The test certificate produced have the > extension CA:FALSE. I'm not sure if I can sign anything with this kind > of certificate, please advise...
No. These certificates are not intended to sign any other entity. If you order a standard certificate, you definitely won't have a CA certificate. :) > What happens when the certificate expires, how to renew it without > having to renew other certificates? When your own certificate expires, you only need to renew it. What else would you like to renew? -- Erwann ABALEA <[EMAIL PROTECTED]> - RSA PGP Key ID: 0x2D0EABD5 ----- ``Do you want protocols that look nice or protocols that work nice?'' Mike Padlipsky, internet architect ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]