On 15-Aug-07, at 10:08 PM, John Peacock wrote:
The reason for this is that you only need to "Trust forever" the
server-signed
cert once, when you first configure your client to use TLS. After
that, I'm not
aware of any mail clients that even give you any feedback that you
are using a
TLS connection (i.e. there isn't any "Padlock" icon).
Generally signed certs are for server to server communication where
you want to have different trust levels between certain clients. We
(MessageLabs) do a lot of this stuff between banks and lawyers for
example.
Matt.