Re: [openstack-dev] [barbican] Secure Setup & HSM-plugin

2016-08-17 Thread Praktikant HSM
[mailto:douglas.mendiza...@rackspace.com] Sent: Dienstag, 16. August 2016 17:28 To: openstack-dev@lists.openstack.org Subject: Re: [openstack-dev] [barbican] Secure Setup & HSM-plugin -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Manuel, Historically all of our contributors working with the PKCS#11 crypto pl

Re: [openstack-dev] [barbican] Secure Setup & HSM-plugin

2016-08-16 Thread Douglas Mendizábal
n Germany > > > > -Original Message- From: Douglas Mendizábal > [mailto:douglas.mendiza...@rackspace.com] Sent: Freitag, 12. August > 2016 18:24 To: OpenStack Development Mailing List (not for usage > questions) <openstack-dev@lists.openstack.org> Cc: Ariano-Tim D

Re: [openstack-dev] [barbican] Secure Setup & HSM-plugin

2016-08-16 Thread Praktikant HSM
org> Cc: Ariano-Tim Donda <ariano-tim.do...@utimaco.com>; Jiannis Papadakis <jiannis.papada...@utimaco.com> Subject: Re: [openstack-dev] Barbican: Secure Setup & HSM-plugin -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Manuel, I'm happy to hear about your interest in B

Re: [openstack-dev] Barbican: Secure Setup & HSM-plugin

2016-08-12 Thread Douglas Mendizábal
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Manuel, I'm happy to hear about your interest in Barbican. I assume your HSM has a PKCS#11 interface since the admin commands to generate the MKEK and HMAC keys worked for you. The labels for the generated keys should be specified in the

[openstack-dev] Barbican: Secure Setup & HSM-plugin

2016-08-12 Thread Praktikant HSM
Hi all, As a member of Utimaco's pre-sales team I am currently testing an integration of Barbican with one of our HSMs. We were able to generate MKEKs and HMAC keys on the HSM with the 'pkcs11-key-generation' as well as 'barbican-manage hsm' commands. However, it is not fully clear to us how