Yubico Forum

...visit our web-store at store.yubico.com
It is currently Tue Jan 30, 2018 11:17 am

All times are UTC + 1 hour




Post new topic Reply to topic  [ 2 posts ] 
Author Message
 Post subject: RSA key store
PostPosted: Fri Apr 15, 2011 8:41 am 
A use case suggested by a number of applicants to the YubiHSM beta program is to secure private RSA keys used in asymmetric encryption.

As can be read on the YubiHSM product page (under Use cases), there is currently only support for symmetric AES ECB encryption/decryption, and HMAC-SHA1 hashing (plus other unrelated features).

Just encrypting the RSA private key with AES will not provide very much added security since an attacker that gains access to the host with the YubiHSM could just ask the YubiHSM to decrypt the RSA key.

At this stage, we do not think you can achieve meaningful protection of RSA keys using the YubiHSM (but please prove us wrong =)), but we are listening to the feedback and potential use cases for the YubiHSM while refining our product roadmap.

/Fredrik


Top
  
Reply with quote  

Share On:

Share on Facebook FacebookShare on Twitter TwitterShare on Tumblr TumblrShare on Google+ Google+

 Post subject: Re: RSA key store
PostPosted: Tue Jun 14, 2016 11:27 pm 
Offline

Joined: Tue Jun 14, 2016 5:53 am
Posts: 7
Would be interested in a HSM that supported RSA sign function with a flexible PIN policy that includes no PIN as an option.

Scenario would be automated code signing to protect the private key.


Top
 Profile  
Reply with quote  
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

All times are UTC + 1 hour


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group