Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

PKCS11 #10

Open
Yxoti opened this issue Jun 15, 2017 · 1 comment
Open

PKCS11 #10

Yxoti opened this issue Jun 15, 2017 · 1 comment

Comments

@Yxoti
Copy link

Yxoti commented Jun 15, 2017

Hi,

Is your product compatible with the PKCS11 standard ?
If not, is it possible to add this functionality?

Best regards,

Yxoti

@kakwa
Copy link
Owner

kakwa commented Jun 16, 2017

Right now, it's not supported.

It should be possible to implement it through the OpenSSL pkcs11 engine provided by OpenSC, but this requires some modification on the uts-server part for the initialization and the setup of the engine.

I've begun to play with softhsm2 and the pkcs11 engine last evening to see how it would be possible to implement it. But this project is more a side project for me so I will not commit to any dead line here 😼.

Also I don't have a proper HSM, like an nCipher, a Luna SA, a (truly shitty) Luna SE or even a simple USB HSM/smartcard for testing right now.

I've just ordered https://shop.nitrokey.com/shop/product/nitrokey-hsm-7 to have fun wit an HSM, I never actually played with one directly, your ticket just gave me the excuse to buy one 😄 .

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants