certificate chains

over on ssl-talk, Peter Williams asked:

>Can the Netscape products detect circularities and redundancies
>in cert chains?

I think that's a fine question.

For SPKI certs, as long as people don't use


throughout there is no chance for a certificate loop, but if everyone uses
(*) there is.

That's something we will need to keep in mind as we write verifying code.

 - Carl

