Skip to main content

PKCS#11 support

Portal Admin
Published on: 18/01/2010 Discussion Archived

The SAML engine should support a PKCS#11 interface for signature (and maybe for verification, although this is not crucial). We probably need 2 attributes in the config file: - chosing between a key store or a PKCS#11 interface - the path of the PKCS#11 DLL/SO (the latter could maybe be the same as the key store path?)



HardwareNone
ProductSAML engine
Operating SystemNone
ComponentSAML engine
VersionNone
Severityenhancement
ResolutionNone

Category

Bugs

Comments

marcstern (not verified) Thu, 21/01/2010 - 09:14

We will also need to use a PKCS#11 interface or a key store in the specific PEPS for national identifier derivation. Shouldn't we define these parameters only once at the global PEPS level?

Login or create an account to comment.