Hello Dave,

In your first posting, you said that you have loaded "the relevant
PKCS#11 module".  What module are you using?  Is it provided with
ProtectTools?

Otherwise, I read through some of the HP ProtectTools Embedded Security
Manager whitepapers and it seems that the private key and certificate
should both be accessible through the PKCS#11 interfaces.

The master storage key, which is generated by the TPM, never leaves the
TPM.  However, the private key, which goes with the digital certificate
you bought, is protected by the master storage key (or by a chain of
keys which is in turn protected by the master storage key) and should
be available to NSS.

Please tell us when you find the solution, I am quite interested :)

Regards,
Peter

_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to