> How do I get Windows to recognize me (my CA) as a trusted CA?! You can get Windows to recognize your CA as trusted by importing the CA certificate, which you can't do AFAIK by only accepting certificates your CA has signed. One way to go is to publish your CA certificate (DER format should work just fine) on a web page and encourage clients to trust it. Presumably you could also copy the CA cert to a Windows share and load it from there as well.
For an example, see the private CA we've set up at the University of Waterloo: http://www.ist.uwaterloo.ca/security/IST-CA/. --Dawn ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]