Perhaps I should have been more clear, you *don't* need a self-signed keystore, and they offer less protection, not more, than CA-signed certificates.
Your question is not one that should be informally asked & answered on a mailing list. You need to do some googling and study up on certificates if you plan on working with them in production. Glen fachhoch wrote: > > please tell me why do we need a self signed keystore , it works without > self signing , please tell me what is purpose of self signing > -- View this message in context: http://cxf.547215.n5.nabble.com/cxf-security-tp2848487p2850301.html Sent from the cxf-user mailing list archive at Nabble.com.