Ken,
Thanks for the information, and I hope you can add some more.
I would be quite interested to know what type of organizational
hudles, if any, you had to go through to sign a contract (if you
had to sign one) with TIS to be a CA, and even more importantly,
how much effort it took to get DISA management to sign off
on the use of digital signatures for CERT purposes.
Were any restrictions placed on the use of these certificates
for any other purposes?
I would be DELIGHTED to be wrong, but my perception
is that so far not one single organization has jumped
through all of these legal hoops and set up a real,
honest-to-God, non-beta use of digital signatures and
X.509 certificates, and I am growing increasingly
concerned.
If you or anyone else has actually cracked this particular
nut, I think it would be very beneficial to educate the rest of us
as to what it took. Maybe we can use it as a reference sell.
Bob