Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-21 Thread Andreas Jellinghaus
2012/11/21 Martin Paljak : > On Wed, Nov 21, 2012 at 8:55 PM, Andreas Jellinghaus > wrote: >> 2012/11/21 Martin Paljak : >>> On Thu, Nov 15, 2012 at 7:12 PM, Anders Rundgren >>> wrote: >>> Another hurdle is that the GP security model is incompatible with the Internet: GP presumes mutual

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-21 Thread Martin Paljak
On Wed, Nov 21, 2012 at 8:55 PM, Andreas Jellinghaus wrote: > 2012/11/21 Martin Paljak : >> On Thu, Nov 15, 2012 at 7:12 PM, Anders Rundgren >> wrote: >> >>> Another hurdle is that the GP security model is incompatible with the >>> Internet: GP presumes mutual authentication AFAIK. This is how t

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-21 Thread Andreas Jellinghaus
2012/11/21 Martin Paljak : > On Thu, Nov 15, 2012 at 7:12 PM, Anders Rundgren > wrote: > >> Another hurdle is that the GP security model is incompatible with the >> Internet: GP presumes mutual authentication AFAIK. This is how the >> Google Wallet currently works (Google holds the master keys to

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-21 Thread Martin Paljak
On Thu, Nov 15, 2012 at 7:12 PM, Anders Rundgren wrote: > Another hurdle is that the GP security model is incompatible with the > Internet: GP presumes mutual authentication AFAIK. This is how the > Google Wallet currently works (Google holds the master keys to the SE) > but that's not really cu

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-15 Thread Anders Rundgren
On 2012-11-15 08:56, Andreas Schwier wrote: > Does the API matter anyway ? > > No, it's the functionality the TEE provides: Generate, store, maintain > and use cryptographic material and do all kinds of risk management. And > these functions do not really require web service and overloaded APIs. >

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-15 Thread Douglas E. Engert
On 11/15/2012 3:40 AM, Andreas Kuehne wrote: > Hi Peter, >>> http://www.theregister.co.uk/2012/11/13/trustzone_company >>> >>> Smart cards? Don't think so. >> TrustZone isn't half bad hardware. >> >> But I bet that the solution they come up with will still use exactly >> the same old APDUs, with

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-15 Thread Andreas Kuehne
Hi Peter, >> http://www.theregister.co.uk/2012/11/13/trustzone_company >> >> Smart cards? Don't think so. > TrustZone isn't half bad hardware. > > But I bet that the solution they come up with will still use exactly > the same old APDUs, with just a minimum bolted-on, in order to make > something

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-14 Thread Andreas Schwier
Does the API matter anyway ? No, it's the functionality the TEE provides: Generate, store, maintain and use cryptographic material and do all kinds of risk management. And these functions do not really require web service and overloaded APIs. They require APIs that are consistent, simple to implem

Re: [opensc-devel] New SE (Security Element) Company Formed

2012-11-14 Thread Peter Stuge
Anders Rundgren wrote: > http://www.theregister.co.uk/2012/11/13/trustzone_company > > Smart cards? Don't think so. TrustZone isn't half bad hardware. But I bet that the solution they come up with will still use exactly the same old APDUs, with just a minimum bolted-on, in order to make somethi