On Tue, 15 Mar 2005, John Good wrote: > I think the answer is not weak certificates but "weak" CAs. In my mind, these are equivalent. ;-) > the user isn't really having to handle certificates themselves. Yes!! Ray