Hello Sam and Wouter,

On Sun, 29 Sept 2024 at 02:33, Carlos Henrique Lima Melara <char...@debian.org> 
wrote:
>
> We had some feedback from the discussion in upstream's BTS and
> apparently curl does support pkcs#11 with gnutls backend:
>
> Comment in #14925 [1]:
> > I setup softhsm2 and imported private key and certificate, and then giving 
> > pkcs#11 to curl just works:
> >
> > curl --cert 'pkcs11:URL' --pass <PIN> https://...
>
> Could you check that, Sam?

Sam, let us know if you can confirm there's still a problem there, please. It
was said on GitHub that they could make it work, so maybe your issue is only
when doing a specific operation and that might have been missed.

> On Tue, Aug 27, 2024 at 10:41:38AM GMT, Wouter Verhelst wrote:
> > I have a similar problem, but with PKCS#12 files rather than PKCS#11
> > libraries. GnuTLS tries to interpret them as PEM files, which obviously
> > goes very wrong.
>
> It was merged upstream [2] and will be available in the next release
> (8.11.0)!

Wouter, I've pulled the fix into 8.10.1-2, which was uploaded on the 10th
October, can you check if that fully resolves your issue?

Cheers,


-- 
Samuel Henrique <samueloph>

Reply via email to