We would like to avoid scenario when a system administraotr might accidently change the behaviour of one of the applications running on the system by acidentally installing a nes trusted certificate into a system store.

I can easily argue both ways :) In some cases, one might want
to have *everything* in one place (btw, this is the approved
MS way for dealing with certificates :) ). But you are also right
that sometimes it is not the best approach. However, I am not
buying your "...acidentally installing..." argument because
sysadmin can also acidentally put a new certificate in any other
place as well :)

Aleksey





_______________________________________________
xmlsec mailing list
[email protected]
http://www.aleksey.com/mailman/listinfo/xmlsec

Reply via email to