Kaspar, Thanks for your reply. It was much better than the one I wrote (but also didn't send :).
I wrote a long reply about how mozilla products don't use Microsoft's proprietary crypto APIs and CSPs, but rather use the open PKCS#11 standard API for cryptographic modules, which runs on just about all platforms known to man. But your answer was much shorter and suggested a quick solution. Thanks. BTW, I would not say that the <keygen> tag is deprecated. There are still far more CAs that use it than the ones that use crypto.generateCRMFRequest(), IINM. Regards, -- Nelson B _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto