From 1cc38905dae926378f7b98d96ff668dfaa0eb3d5 Mon Sep 17 00:00:00 2001 From: Alex Gaynor Date: Mon, 14 Mar 2016 12:34:52 -0400 Subject: rephrase --- docs/x509/tutorial.rst | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'docs/x509') diff --git a/docs/x509/tutorial.rst b/docs/x509/tutorial.rst index ecdd4c1e..6941372f 100644 --- a/docs/x509/tutorial.rst +++ b/docs/x509/tutorial.rst @@ -89,7 +89,8 @@ Creating a self-signed certificate While most of the time you want a certificate that has been *signed* by someone else (i.e. a certificate authority), so that trust is established, sometimes you want to create a self-signed certificate. Self-signed certificates are not -issued by a certificate authority, but are instead signed by themselves. +issued by a certificate authority, but instead they are signed by the private +key corresponding to the public key they embed. This means that other people don't trust these certificates, but it also means they can be issued very easily. In general the only use case for a self-signed -- cgit v1.2.3