[144580] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: HSM outage causes root CA key loss

daemon@ATHENA.MIT.EDU (Stefan Kelm)
Tue Jul 14 16:04:04 2009

Date: Tue, 14 Jul 2009 18:10:20 +0200
From: Stefan Kelm <skelm@bfk.de>
Reply-To: skelm@bfk.de
To: cryptography@metzdowd.com
In-Reply-To: <E1MQEYX-0002cn-Ei@wintermute01.cs.auckland.ac.nz>

> http://www.heise.de/security/E-Gesundheitskarte-Datenverlust-mit-Folgen--/news/meldung/141864
> 
> reports that the PKI for their electronic health card has just run into
> trouble: they were storing the root CA key in an HSM, which failed.  They now
> have a PKI with no CA key for signing new certs or revoking existing ones.

Actually, for a couple of days now they didn't stop pointing out that
they were still running the PKI in a test environment and that only
'a few hundred test cards' are affected... Just stupid nonetheless...
:-\

Cheers,

	Stefan.

-- 
Stefan Kelm                   <skelm@bfk.de>
BFK edv-consulting GmbH       http://www.bfk.de/
Kriegsstrasse 100             Tel: +49-721-96201-1
D-76133 Karlsruhe             Fax: +49-721-96201-99

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post