Thanks for your responses.
If you are controlling the server and writing the client program, why do you care about CA? Why not just invent your own cert and sign it yourself using free tools like OpenSSL?
I don't control the server...I just call it from my program. And they already have a certificate signed by Entrust, and are paying for it...so that's what certificate I'm going to have to use.