0.9.2
-----
- Layout enhancements
    - unifying the CGI-scripts
    - XML-based menugeneration
    - frameless web-interfaces
- central interface for accesscontrol and sessionmanagement
    - filter/pass design like for firewalls or compilers
    - connection
        - IP area
        - SSL activated
        - symmetric cipher
        - asymmetric cipher
        - user certificate
    - authentication
        - login
            - login/passphrase
            - ssl user certificate based
            - signature based
        - session
            - cookies
            - session IDs
    - authorization
        - per interface
        - per script (and role)
        - per functionality (and role)
        - role based
        - user based
    - write an own independent log
        - connection
        - login
        - session parameters
        - athorization result and used rule(s)
        - request data
        - script
- passphrasemanager for keys
    - better HSM support
    - different HSMs for CA-key, backup and batchprocessor
    - splitted passphrases for software keys
- OpenCA::OpenSSL::Fast
    - X509
    - REQ
    - CRL

=======================================================================

future
------
- full OCSP integration
- SCEP support
- support multiple suffixes in LDAP-trees.
- pkcs#8 --> rsa --> rsa crypted (OpenSSL bug)
- hidden header-fields in the request-object to store more informations
  (configurable header-infos)
- modified infomail to users which has not the private key (basic_csr)
- specify the downloadformat of a certificate directly
- protect CA-exports by signing

* warn if Certificates or CRLs expiring
* warn defined roles if CRL will expire  (default 24h)
* Timestamping
* HW-Tests

FIXME:
------
referencelinks in lists are not wrong but sometimes not really nice
