Vlasta Joskova wrote:
>
> Hi all,
>
> Are there any plans to support PKCS#11 tokens in OpenSSL? Has someone
> done something in this field? Any practical experience?
I have completet the coding of such support for OpenSSL
But it needs a lot of testing and debugging and I still have
problems with getting the DSA Support back to wokr after the PKCS#11
graft.
Due to our firewall I cannot upload the patch to any ftp server,
but I am willing to send out patches to those that want them.
And in regard to Ralphs mail: I am the author of gpkcs11 and
it only uses the crypto library of the OpenSSL and therefore
i fairly straight to do by calling the crypto functions.
extending the EVP interface and cleaning up some of the code
in the SSL routines is a much more involved job.
mfg lutz
--
*******************************************************************
Lutz Behnke Tel.: 040 / 766 29 1423
TC TrustCenter for Security Fax.: 040 / 766 29 577
in Data Networks GmbH email: [EMAIL PROTECTED]
Am Werder 1
21073 Hamburg, Germany
S/MIME Cryptographic Signature