When customer run a code signing applet, a security warning dialog box will be popup. User will have option to Grant always, grant for this browser session or reject it. If user select Grant always, this certificate will permanently store in JRE keystore for future using.
In window Vista, all process in IE only has low integrity level, but our JRE keystore is stored in a medium integrity level directory, therefore the saved certificate won't be able to write the the default directory and redirect to "Internet Temporary" directory. This will cause a lot of confusion and break our functionality of certificate management features.
The above scenario will apply to HTTPS server certificate too.