[16162] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: pci hardware for secure crypto storage (OpenSSL/OpenBSD)

daemon@ATHENA.MIT.EDU (David Shaw)
Tue Sep 14 18:45:39 2004

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Tue, 14 Sep 2004 18:25:15 -0400
From: David Shaw <dshaw@jabberwocky.com>
To: Cryptography List <cryptography@metzdowd.com>
Mail-Followup-To: Cryptography List <cryptography@metzdowd.com>
In-Reply-To: <20040914083111.GX1457@leitl.org>

On Tue, Sep 14, 2004 at 10:31:11AM +0200, Eugen Leitl wrote:
> 
> I'm looking for (cheap, PCI/USB) hardware to store secrets (private
> key) and support crypto primitives (signing, cert generation). It
> doesn't have to be fast, but to support loading/copying of secrets
> in physically secure environments, and not generate nonextractable
> secret onboard. Environment is OpenBSD/Linux/OpenSSL/gpg.

Since your environment includes GPG, then I think the OpenPGP
smartcard meets pretty well what you are requesting.  Combine it it
with a USB smartcard reader, and the card becomes USB, too ;)

http://www.silicon-trust.com/pdf/secure_8/48_ppc.pdf
http://www.g10code.de/p-card.html

David

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post