[Cryptech Core] libhal / PKCS #11 status

Randy Bush randy at psg.com
Tue Jun 23 21:31:35 UTC 2015


i watched you start the move to libt* and looked at it a bit.  glad the
component approach worked out.

> I've rewritten my pkcs11 code to use libhal, and, as of last night,
> the result passes the same basic DNSSEC signer test as the earlier
> (Cryptlib-based) version did.

yay!

> Next step for me unless somebody has a better suggestion is to get
> this code to survive testing by hsmbully.  Right now it doesn't get
> very far for silly reasons (C_GetMechanismInfo() NIY), so I'll be
> working on that unless somebody has a better idea.

jakob, if you were the customer, what would be your priorities?

randy



More information about the Core mailing list