On Mon, 15 Oct 2012 13:40:06 +0200, Miek Gieben <[email protected]> said:

> [ Quoting <[email protected]> in "Re: [dns-operations] Summary: Anyon..." ]
>> On 14. 10. 2012, at 13:37, Carlos M. Martinez <[email protected]> wrote:
>> 
>> > That could be a really interesting project. I'm not sure how can I 
>> > contribute, but I'd love to see that happen.
>> 
>> Even helping defining requirements (when we start gathering them) would be 
>> tremendous help...

> Indeed, sounds like a really interesting project.

> But why would a hardware implementation be better than, for instance, SoftHSM?

A hardware HSM allows you to detect when your keys get stolen
(provided the hardware does not implement extraction of the keys, of
course).  In our case, this is the *only* reason we use a HSM at all.

-- 
Alex
_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to