On Wed, Sep 5, 2012 at 2:29 PM, helpcrypto helpcrypto
<helpcry...@gmail.com> wrote:

>> And IMHO device-attached containers (TPM, Intel etc) are totally
>> different from transportable key-containers (like smart cards or USB
>> tokens)
>
> So, IYHO, whats the better option?

Do you want my Humble or Honest opinion ? :)

It shall depend on the use case. I doubt that there will ever be a
"single, universal keychain", but many. VPN authentication with device
based (TMP etc) keys which get auto-provisioned and a "movable"
identity in the form of an eID smart card for digital signatures or
cross-domain authentication have different requirements. Key
containers for encryption is yet another story.

And embedded keystores (phones, vpn devices, whatnot) that need a
provisioning scheme is also quite obvious, with the smartphone scene
creating the firsthand need for it.

Martin

As always, there's no golden bullet solution.
_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to