[master] native PKCS#11 support
3705. [func] "configure --enable-native-pkcs11" enables BIND to use the PKCS#11 API for all cryptographic functions, so that it can drive a hardware service module directly without the need to use a modified OpenSSL as intermediary (so long as the HSM's vendor provides a complete-enough implementation of the PKCS#11 interface). This has been tested successfully with the Thales nShield HSM and with SoftHSMv2 from the OpenDNSSEC project. [RT #29031]
This commit is contained in:
1
bin/tests/system/pkcs11ssl/usepkcs11
Normal file
1
bin/tests/system/pkcs11ssl/usepkcs11
Normal file
@@ -0,0 +1 @@
|
||||
This test relies on PKCS#11!
|
||||
Reference in New Issue
Block a user