Hi Harish !!
Counter Question. - Lets consider first just handshake scenario and no encryption.
Say I am using MuleSoft as source application ( WebService). -> SAP PI ( Middleware )
Now MuleSoft has shared there public certificate with PI. and we have imported that in KeyStore and WebSecurity under trustedCA.
Now Question is when MuleSoft is sending data to PI , do they have to add something extra with soap payload to add this digital signature?