From: Averroes <[EMAIL PROTECTED]> a.averroes> A simple question, but not a least: a.averroes> instead of using the index.txt file as database of a.averroes> registered certificates, could it be possible to use a SQL a.averroes> database "e.g. PostgreSQL" as the engine version of a.averroes> openssl can with HSM "e.g. nCipher"
Currently no, but that's honestly a rather cool idea. The reason that it wouldn't work right now is that the engine framework only has the functionality to retrieve keys or key handles from a HSM. No storage capabilities and no certificates on HSM. I don't know what the rest of the development team says about this, but I would for sure be interested into looking at implementing that kind of extension. This won't happen for 0.9.7, however. We already have a lot of new stuff coming with that release, so extensions like the above will have to wait 'til 0.9.8 or later. -- Richard Levitte \ Spannvägen 38, II \ [EMAIL PROTECTED] Redakteur@Stacken \ S-168 35 BROMMA \ T: +46-8-26 52 47 \ SWEDEN \ or +46-733-72 88 11 Procurator Odiosus Ex Infernis -- [EMAIL PROTECTED] Member of the OpenSSL development team: http://www.openssl.org/ Software Engineer, GemPlus: http://www.gemplus.com/ Unsolicited commercial email is subject to an archival fee of $400. See <http://www.stacken.kth.se/~levitte/mail/> for more info. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]