http://www.ietf.org/id/draft-zhou-tls-server-redirect-00.txt i am probably misunderstanding. so could someone with more clue please explain why this is not a set-up for a really bad cert substitution attack? randy
http://www.ietf.org/id/draft-zhou-tls-server-redirect-00.txt i am probably misunderstanding. so could someone with more clue please explain why this is not a set-up for a really bad cert substitution attack? randy