On So, 26 Feb 2006, Dr. Stephen Henson wrote:

[example snipped]

> The fairly large random value for serial numbers is designed to avoid that
> situation but still allow the more knowledgeable user to override that.
> 
> If you are sure the issuer name and serial number will be unique then you can
> choose any value you wish.

Fine, that's understandable.

> One commercial reason for not using consecutive values is that competitors can
> work out how many certificates you've issued...

Yeah, the same procedure as with consecutive invoice-numbers indicating the
number of clients ;-)

Ciao, Georg
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to