Jorge Redondo Flames wrote:
> Have anyone used the Openca-OCSP Responder with a private key protected 
> by a HSM nCipher? 

Yes.

>Is that possible?

Yes.

Use the latest ocspd-sources from openca.org. Specify
--enable-openssl-engine when running configure. Use the follwing snippet
in the ocspd configuration file (rename rsa-ocsp01 to whatever key-id
you used for your key):

[ OCSPD_default ]

ocspd_key         = engine:rsa-ocsp01
engine = HSM
engine_id = chil
0.engine_pre = THREAD_LOCKING:1


Juergen

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Openca-Users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to