[libvirt-users] Virtual Smartcard GPG

Daniel P. Berrange berrange at redhat.com
Wed Apr 29 09:10:41 UTC 2015


On Wed, Apr 29, 2015 at 01:26:31AM +0000, roky at openmailbox.org wrote:
> Hi. Is is possible to use GPG on the host instead of NSS with virtual
> smartcards? Please document how or add support for it.
> 
> Can a virtual smartcard make the host less secure? If there are bugs in
> GPG/NSS backend on the host can they be abused by untrusted code in the vm?

IIUC, all the smartcard support is based on NSS, but I'm not too familiar
with this code. You might try the QEMU mailing list instead, or perhaps
the SPICE mailing list.

Regards,
Daniel
-- 
|: http://berrange.com      -o-    http://www.flickr.com/photos/dberrange/ :|
|: http://libvirt.org              -o-             http://virt-manager.org :|
|: http://autobuild.org       -o-         http://search.cpan.org/~danberr/ :|
|: http://entangle-photo.org       -o-       http://live.gnome.org/gtk-vnc :|




More information about the libvirt-users mailing list