> They should be sufficient. Certificates are usually public knowledge
> anyway so using weak or no encryption on them is harmless but if you
> want to use strong encryption on it you can, however some of the older
> export browsers wont import 3DES encrypted certificates.
> 
> Steve.
My concern is that, since they used the same password, will the weak encryption
of certificate open a door for the private key?

What's the effect on increasing mac_iter, does it worse the iteration?

-- 
(~._.~)  �� Ⱥ Ӣ  (Qun-Ying)          (65) 874-6743
 ( O )   TrustCopy Pte Ltd / Kent Ridge Digital Labs
()~*~()  21 Heng Mui Keng Terrace,  Singapore 119613
(_)-(_)    [EMAIL PROTECTED]  *  [EMAIL PROTECTED]
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to