On May 14, 2011, at 11:54 AM, Zico wrote: > Do we "actually" need a third party to make our certificate? I mean, we can > generate self-certified certificates, right? So, will my production machine > not run if I don't use CAcert.org or GoDaddy or Verisign?
It is a matter of trust. If your server is serving a very small group that will trust your self-signed cert, then fine. If however your server is to be visited by a large number of people most of which won't know you, they would likely feel better if your cert was obtained from a well-known and trustable 3rd party. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org