* Message by -Dr. Stephen Henson- from Fri 2009-05-15: [ ... how to pinpoint correct certificate ... ]
> The -certfile option can contain a whole load of certificates and the hint in > the PKCS#7 structure will be used to locate the correct one. Ok. There is another thing that I do not understand. The output of 'openssl smime -verify ...' is rather sparse in case that verification is successful. How can I know which certificate was responsible? I cannot see why verification would make sense at all without knowing the DN of the signer (which is the subject DN of the correct certificate).
pgpqNrUvoeUaS.pgp
Description: PGP signature