On Wed, Sep 5, 2012 at 2:29 PM, helpcrypto helpcrypto <helpcry...@gmail.com> wrote:
>> And IMHO device-attached containers (TPM, Intel etc) are totally >> different from transportable key-containers (like smart cards or USB >> tokens) > > So, IYHO, whats the better option? Do you want my Humble or Honest opinion ? :) It shall depend on the use case. I doubt that there will ever be a "single, universal keychain", but many. VPN authentication with device based (TMP etc) keys which get auto-provisioned and a "movable" identity in the form of an eID smart card for digital signatures or cross-domain authentication have different requirements. Key containers for encryption is yet another story. And embedded keystores (phones, vpn devices, whatnot) that need a provisioning scheme is also quite obvious, with the smartphone scene creating the firsthand need for it. Martin As always, there's no golden bullet solution. _______________________________________________ opensc-devel mailing list opensc-devel@lists.opensc-project.org http://www.opensc-project.org/mailman/listinfo/opensc-devel