<div dir="ltr"><div class="gmail_extra"><div class="gmail_quote">On 22 February 2016 at 20:18, Richard Levitte <span dir="ltr"><<a href="mailto:levitte@openssl.org" target="_blank">levitte@openssl.org</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><br>
This is where I go dreamy eyed with a desire to make all our built in<br>
algorithm into an engine, loadable like any other engine.</blockquote><div><br></div><div>I have never tried such setup but this sounds like SoftHSM2 [0] with OpenSSL crypto backend loaded by OpenSSL via engine_pkcs11 [1].<br></div><div></div><div><br></div><div>[0] <a href="https://github.com/opendnssec/SoftHSMv2">https://github.com/opendnssec/SoftHSMv2</a><br>[1] <a href="https://github.com/OpenSC/engine_pkcs11">https://github.com/OpenSC/engine_pkcs11</a><br></div><div> <br></div></div>Regards, Jaroslav<br></div></div>