Hi, Is there some means to explicitly indicate the order in which certificates in an xml dig sig file should be processed? The problem is that if you screw up the certificate order in the xml file, the validator (e.g,. xmlsec) does not know which cert is the end-entity.
See also the following from Aleksey Sanin's, which provides a bit more detail: http://www.aleksey.com/pipermail/xmlsec/2011/009174.html TLR, Frederick, or members of XMLSec, maybe you could comment? Kind regards, Marcos -- Marcos Caceres http://datadriven.com.au
