Robert Relyea wrote: > This is correct, NSS will regenerate the CERTCertificate from a > DERCertificate. Note: if the underlying system has changed (the user has > editted the trust flags), then deserializing will not produce exactly > the same CERTCertificate. On the other hand, I don't think you want the > CERTCertificate to be exactly the same.
Indeed. Sounds like the DER is exactly what I want. Thank you all! -Boris _______________________________________________ dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto