[openssl-dev] Ubsec and Chil engines

Blumenthal, Uri - 0553 - MITLL uri at ll.mit.edu
Mon Feb 22 15:59:18 UTC 2016


On 2/22/16, 6:12 , "openssl-dev on behalf of David Woodhouse"
<openssl-dev-bounces at openssl.org on behalf of dwmw2 at infradead.org> wrote:

>>It may even be better, instead of pushing for different engines for
>> different hardware, to make PKCS#11 the only API used to talk to
>> hardware. There is a quite functional (and active as project) pkcs11
>> engine for openssl [0].
>
>Agreed. With the caveat that I *really* want libp11 and engine_pkcs11
>to die, and be replaced by native code in openssl/crypto/pkcs11/

Would you mind explaining what you mean by “native code” that presumably
could replace the current libp11, and who in your opinion would support it?
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4324 bytes
Desc: not available
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20160222/86a3a703/attachment-0001.bin>


More information about the openssl-dev mailing list