[ Quoting Rickard Bellgrim in "Re: [Opendnssec-user] ods-control s"... ]
>    We will fix this, when we migrate over to only using the private key
>    object. OpenDNSSEC should not actually need the public key object, since
>    you should be able to create the public key (DNSKEY) from the information
>    in the private key object. But PKCS#11 does not guarantee that all of the
>    public key material is available within the private key object. It should
>    although be safe to do this, since we do not know any vendor which does
>    not keep that data.

Ah. okay.

Thanks for the quick reply.

grtz Miek

Attachment: signature.asc
Description: Digital signature

_______________________________________________
Opendnssec-user mailing list
[email protected]
https://lists.opendnssec.org/mailman/listinfo/opendnssec-user

Reply via email to