> Arguably, you shouldn't do it even once, because it's extremely easy
> to fall into the pattern of "one key and one key only" in the systems
> design or implementation.  I can't remember who coined the phrase, but
> it's not "good crypto hygeine".

I have argued many times that not including the creation date in every private 
key data format was a *huge* mistake.

DS


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to