Regarding the usage of "BEGIN TRUSTED CERT". This header is created when using the '-trustout' arg to x509(1ssl)
The change as such means breaks for example : 'openssl verify -CApath /etc/ssl/certs' if one of the certs in the chain has this header. The trust functionality as such is in x509(1ssl) marked as experimental. But i did got a little peeve when my carefully created root ca cert didnt appear as i think it should.... -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org