Ca certificate

Hi group,

    i have another question about pkinit. In the configuration file we 
must specify a ca certificate for the client and for the server, because 
the first must verify the public key of the second and the second the 
public key of the first.

Is it correct?

It was necessary for a confrontation with Shishi