Path Discovery Test 4.1.1.3


Is it normal practice when you issue two certificates for separate purposes 
(one that signs the end-entity and the other for signing the CRL) to have 
identical Key Usage?  I would think that if you are issuing two certificates 
(especially if they have identical DNs) that they should have unique Key 
Usage values. I'd appreciate to hear what anyone thinks on the subject.

Thanks,
Steve
________________________________
Steven Madwin
Acrobat Quality Engineering
Adobe Systems, Inc.
+1 (408) 536-4343 

smime.p7s



Date Index | Thread Index | Problems or questions? Contact list-master@nist.gov