Robert Relyea wrote:
> This is correct, NSS will regenerate the CERTCertificate from a 
> DERCertificate. Note: if the underlying system has changed (the user has 
> editted the trust flags), then deserializing will not produce exactly 
> the same CERTCertificate. On the other hand, I don't think you want the 
> CERTCertificate to be exactly the same.

Indeed.  Sounds like the DER is exactly what I want.  Thank you all!

-Boris

_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to