Michael Ströder wrote:
Martin Schneider wrote:I think they keystore on opencryptoki follows exactly the principle how storing other things "in" the TPM works: building an encrypted key hierarchy that is stored on harddisk with an encryption key rooted in the Storage Root Key in the TPM.Isn't that how most HSMs work?
I know nCipher HSMs work this way. -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto