[openssl-dev] [RFC 0/2] Proposal for seamless handling of TPM based RSA keys in openssl

Salz, Rich rsalz at akamai.com
Tue Nov 22 12:54:12 UTC 2016


> would much rather have seen a patch where OpenSSL's PEM module is
> tought to recognise 'BEGIN TSS KEY BLOB', pull out the blob from it, securing

Yes, that would be much more consistent with the existing OpenSSL code which -- like it or not -- works that way.

> My vote goes to a URI based spec rather than bastardising PEM files.

Sure, if you can figure out which URI scheme to use; there are many of them. :)

	/r$



More information about the openssl-dev mailing list