From: Averroes <[EMAIL PROTECTED]>

a.averroes> A simple question, but not a least:
a.averroes> instead of using the index.txt file as database of
a.averroes> registered certificates, could it be possible to use a SQL
a.averroes> database "e.g. PostgreSQL" as the engine version of
a.averroes> openssl can with HSM "e.g. nCipher"

Currently no, but that's honestly a rather cool idea.

The reason that it wouldn't work right now is that the engine
framework only has the functionality to retrieve keys or key handles
from a HSM.  No storage capabilities and no certificates on HSM.  I
don't know what the rest of the development team says about this, but
I would for sure be interested into looking at implementing that kind
of extension.

This won't happen for 0.9.7, however.  We already have a lot of new
stuff coming with that release, so extensions like the above will have
to wait 'til 0.9.8 or later.

-- 
Richard Levitte   \ Spannvägen 38, II \ [EMAIL PROTECTED]
Redakteur@Stacken  \ S-168 35  BROMMA  \ T: +46-8-26 52 47
                    \      SWEDEN       \ or +46-733-72 88 11
Procurator Odiosus Ex Infernis                -- [EMAIL PROTECTED]
Member of the OpenSSL development team: http://www.openssl.org/
Software Engineer, GemPlus:             http://www.gemplus.com/

Unsolicited commercial email is subject to an archival fee of $400.
See <http://www.stacken.kth.se/~levitte/mail/> for more info.
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to