Mark wrote: >>No hash can be guaranteed to be unique. Issuer and serial number >>should be, but of course you need to exercise some intelligence here. > > In that case I'll use the Issuer and Serial number. Thanks.
As I said, just remember to use some intelligence. Verify the issuer, be prepared for the case where a clueless CA issues the same serial number (which is definitely an error, but how will you handle it?), etc. Bear ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]