| http://www.w3.org/ns/prov#value | - If cost is an issue and you are Windows centric, as Mr. Denny suggests, go with Microsoft Certificate Services and deploy the certificates as part of the Default Domain GPO. You will likely need three systems, but then can be VMs. You will need the root CA, which should only be used for issuing the certificates for the intermediate CAs.
|