[Cryptech Tech] Plan for ECDSA core (review, please)

Rob Austein sra at hactrn.net
Thu May 28 21:13:28 UTC 2015


At Thu, 28 May 2015 14:52:04 -0400, Russ Housley wrote:
> 
> Will ECDSA be used to sign firmware?  If so, then the module will
> need to be able to do a verify to accept new firmware.

Fair question.  Not in current plan (should it be?).

Current plan says ECDSA is intended primarily for signing DNSSEC,
secondarily for signing RPKI (ie, BGPSEC), tertiaraly (spell checker
says that word is not used often) for other PKI-ish signing tasks.


More information about the Tech mailing list