[openssl-dev] OpenSSL 1.1.0 and FIPS

Jaroslav Imrich jaroslav.imrich at gmail.com
Mon Feb 22 21:02:03 UTC 2016


On 22 February 2016 at 20:18, Richard Levitte <levitte at openssl.org> wrote:

>
> This is where I go dreamy eyed with a desire to make all our built in
> algorithm into an engine, loadable like any other engine.


I have never tried such setup but this sounds like SoftHSM2 [0] with
OpenSSL crypto backend loaded by OpenSSL via engine_pkcs11 [1].

[0] https://github.com/opendnssec/SoftHSMv2
[1] https://github.com/OpenSC/engine_pkcs11

Regards, Jaroslav
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20160222/ad4ba583/attachment.html>


More information about the openssl-dev mailing list