At Tue, 13 Jan 2015 03:29:54 +0100, Bernd Paysan wrote: > > I would advocate against parsing more complex data types (think of > ASN1) inside the ultra-secure boundary, because with bugs in the > parser, you can 0wn the HSM. I wish. RPKI is almost entirely ASN.1, as is a conventional CA.