[Pki-devel] [pki-devel][PATCH] 0018-Implement-enrollment-with-server-side-keygen.patch

John Magne jmagne at redhat.com
Fri Aug 8 02:53:05 UTC 2014


[PATCH] Implement enrollment with server side keygen.

This patch implements server side keygen when so configured in the CS.cfg.

1. In this case, the encryption cert's private key is generated on the KRA and archived by the KRA.
2. The private key is then injected onto the token.
3. This will allow us to later implement certificate and key recovery.
4. Fixed some minor issues discovered with the code that interfaces with the TKS and DRM.
5. Final certificate tested to work with Relyea's "SmartCard" utility to perform legal crypto operations.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0018-Implement-enrollment-with-server-side-keygen.patch
Type: text/x-patch
Size: 59066 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20140807/18cf22b9/attachment.bin>


More information about the Pki-devel mailing list