Project

General

Profile

Feature #6239

Add PKCS#11 v2.40 support

Added by Jason King about 5 years ago. Updated almost 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
lib - userland libraries
Start date:
2015-09-17
Due date:
% Done:

100%

Estimated time:
Difficulty:
Medium
Tags:
needs-triage
Gerrit CR:

Description

According to [[https://www.oasis-open.org/news/announcements/pkcs-11-cryptographic-token-interface-base-specification-interface-profiles-curre]], version 2.40 of PKCS#11 has been ratified. This includes several desireable cypto modes including CCM and GCM.


Related issues

Related to illumos gate - Feature #5869: Need AES CMAC support in KCF+PKCS11ClosedGordon Ross2015-04-24

Actions
Related to illumos gate - Feature #7499: Add support for AES GMACNew2016-10-24

Actions
#1

Updated by Jason King about 5 years ago

  • Related to Feature #5869: Need AES CMAC support in KCF+PKCS11 added
#2

Updated by Jason King about 5 years ago

  • Assignee set to Jason King
#3

Updated by Gordon Ross about 5 years ago

FYI, we have PKCS#11 AES CMAC implemented in illumos-nexenta (needed for SMB3)

#4

Updated by Jason King about 4 years ago

  • Status changed from New to In Progress
#5

Updated by Jason King about 4 years ago

#6

Updated by Electric Monk almost 4 years ago

  • Status changed from In Progress to Closed
  • % Done changed from 0 to 100

git commit b106467fd72e9bfd9e2bd78fbaa00a96a4eead45

commit  b106467fd72e9bfd9e2bd78fbaa00a96a4eead45
Author: Jason King <jason.brian.king+github@gmail.com>
Date:   2016-12-22T18:35:06.000Z

    6239 Add PKCS#11 v2.40 support
    6240 pkcs11_mech2keytype returns incorrect key type for CKM_DH_PKCS_PARAMETER_GEN
    Reviewed by: Dan McDonald <danmcd@omniti.com>
    Reviewed by: Robert Mustacci <rm@joyent.com>
    Reviewed by: Igor Kozhukhov <igor@dilos.org>
    Approved by: Richard Lowe <richlowe@richlowe.net>

Also available in: Atom PDF