Darren J Moffat wrote: >> in particular, is this expected to automatically enable use of >> certificates which either contain, or are signed by, an ECC key, or is >> additional work to consumers of this interface required beyond plugging >> the algorithms in? >> > > Updates to KMF maybe required to be able to create and manipulate > certificates that have Elliptic Curve keys. > Correct. KMF would require changes to support ECC certs and keys. The libraries and tools (pktool) would all need some changes.
-Wyllys
