1. I believe the server reads the CA cert into memory at startup for a couple of reasons: to prevent unnecessary disk access, and probably as a security measure as well. If your cert is password protected, you might want an admin to type it in and startup is the perfect time to do it.
2. Maybe it is a # of files limitation? If I'm not mistaken, you can have more than one certificate in a PEM file. Maybe try to combine them. Rich ______________________________________________________________________ Apache Interface to OpenSSL (mod_ssl) www.modssl.org User Support Mailing List modssl-users@modssl.org Automated List Manager [EMAIL PROTECTED]