> Arguably, you shouldn't do it even once, because it's extremely easy > to fall into the pattern of "one key and one key only" in the systems > design or implementation. I can't remember who coined the phrase, but > it's not "good crypto hygeine".
I have argued many times that not including the creation date in every private key data format was a *huge* mistake. DS ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]