OpenSSL 3 and black key?

キャンセル
次の結果を表示 
表示  限定  | 次の代わりに検索 
もしかして: 

OpenSSL 3 and black key?

1,225件の閲覧回数
Christian-R
Contributor I

Hi,

We are interested in being able to use CAAM to support OpenSSL with black keys for signing operations.

OpenSSL 3 recommends using a new interface called "Provider".

It appears there's no ready CAAM "Provider" implementation without using something like OP-TEE. Could someone confirm or deny this?

If there's no ready implementation, any suggestions, is there any official support integrating black key sign/verify operations to mbedTLS, OpenSSH, OpenGPG, etc..?

Thanks,
Christian

0 件の賞賛
返信
3 返答(返信)

1,166件の閲覧回数
Christian-R
Contributor I

If possible we'd like to _not_ have to use OPTEE.
Do you know if that's possible?

Regard,
Christian

0 件の賞賛
返信

1,101件の閲覧回数
Harvey021
NXP TechSupport
NXP TechSupport

Have also checked with internal security team, no positive answer without OPTEE.

 

Regards

Harvey

0 件の賞賛
返信

1,174件の閲覧回数
Harvey021
NXP TechSupport
NXP TechSupport

Hi,

Hope that the section <10.4.8 OpenSSL TLS offload to OP-TEE PKCS#11 via pkcs11-provider> of UG10163.pdf be helpful.

 

Regards

Harvey

0 件の賞賛
返信
%3CLINGO-SUB%20id%3D%22lingo-sub-2192363%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3EOpenSSL%203%20%E3%81%A8%E3%83%96%E3%83%A9%E3%83%83%E3%82%AF%E3%82%AD%E3%83%BC%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2192363%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E3%81%93%E3%82%93%E3%81%AB%E3%81%A1%E3%81%AF%E3%80%81%3CBR%20%2F%3E%3CBR%20%2F%3E%E7%A7%81%E3%81%9F%E3%81%A1%E3%81%AF%E3%80%81CAAM%20%E3%82%92%E4%BD%BF%E7%94%A8%E3%81%97%E3%81%A6%E3%80%81%E7%BD%B2%E5%90%8D%E6%93%8D%E4%BD%9C%E7%94%A8%E3%81%AE%E3%83%96%E3%83%A9%E3%83%83%E3%82%AF%20%E3%82%AD%E3%83%BC%E3%81%A7%20OpenSSL%20%E3%82%92%E3%82%B5%E3%83%9D%E3%83%BC%E3%83%88%E3%81%A7%E3%81%8D%E3%82%8B%E3%82%88%E3%81%86%E3%81%AB%E3%81%99%E3%82%8B%E3%81%93%E3%81%A8%E3%81%AB%E8%88%88%E5%91%B3%E3%81%8C%E3%81%82%E3%82%8A%E3%81%BE%E3%81%99%E3%80%82%3C%2FP%3E%3CP%3EOpenSSL%203%20%E3%81%A7%E3%81%AF%E3%80%81%E3%80%8C%E3%83%97%E3%83%AD%E3%83%90%E3%82%A4%E3%83%80%E3%80%8D%E3%81%A8%E5%91%BC%E3%81%B0%E3%82%8C%E3%82%8B%E6%96%B0%E3%81%97%E3%81%84%E3%82%A4%E3%83%B3%E3%82%BF%E3%83%BC%E3%83%95%E3%82%A7%E3%83%BC%E3%82%B9%E3%81%AE%E4%BD%BF%E7%94%A8%E3%81%8C%E6%8E%A8%E5%A5%A8%E3%81%95%E3%82%8C%E3%81%A6%E3%81%84%E3%81%BE%E3%81%99%E3%80%82%3C%2FP%3E%3CP%3EOP-TEE%20%E3%81%AE%E3%82%88%E3%81%86%E3%81%AA%E3%82%82%E3%81%AE%E3%82%92%E4%BD%BF%E7%94%A8%E3%81%9B%E3%81%9A%E3%81%AB%20CAAM%E3%80%8C%E3%83%97%E3%83%AD%E3%83%90%E3%82%A4%E3%83%80%E3%83%BC%E3%80%8D%E3%82%92%E5%AE%9F%E8%A3%85%E3%81%99%E3%82%8B%E6%BA%96%E5%82%99%E3%81%AF%E3%81%A7%E3%81%8D%E3%81%A6%E3%81%84%E3%81%AA%E3%81%84%E3%82%88%E3%81%86%E3%81%A7%E3%81%99%E3%80%82%E8%AA%B0%E3%81%8B%E3%81%93%E3%82%8C%E3%82%92%E7%A2%BA%E8%AA%8D%E3%81%BE%E3%81%9F%E3%81%AF%E5%90%A6%E5%AE%9A%E3%81%A7%E3%81%8D%E3%81%BE%E3%81%99%E3%81%8B%3F%3C%2FP%3E%3CP%3E%E3%81%99%E3%81%90%E3%81%AB%E5%AE%9F%E8%A3%85%E3%81%A7%E3%81%8D%E3%82%8B%E3%82%82%E3%81%AE%E3%81%8C%E3%81%AA%E3%81%84%E5%A0%B4%E5%90%88%E3%80%81%E4%BD%95%E3%81%8B%E6%8F%90%E6%A1%88%E3%81%AF%E3%81%82%E3%82%8A%E3%81%BE%E3%81%99%E3%81%8B%E3%80%82mbedTLS%20%3CI%3E%E3%80%81OpenSSH%E3%80%81OpenGPG%20%E3%81%AA%E3%81%A9%E3%81%AB%E3%83%96%E3%83%A9%E3%83%83%E3%82%AF%20%E3%82%AD%E3%83%BC%E7%BD%B2%E5%90%8D%2F%E6%A4%9C%E8%A8%BC%E6%93%8D%E4%BD%9C%E3%82%92%E7%B5%B1%E5%90%88%E3%81%99%E3%82%8B%E5%85%AC%E5%BC%8F%E3%82%B5%E3%83%9D%E3%83%BC%E3%83%88%E3%81%AF%E3%81%82%E3%82%8A%E3%81%BE%E3%81%99%E3%81%8B%E3%80%82%3C%2FI%3E%3C%2FP%3E%3CP%3E%E3%81%82%E3%82%8A%E3%81%8C%E3%81%A8%E3%81%86%E3%80%81%3CBR%20%2F%3E%E3%82%AD%E3%83%AA%E3%82%B9%E3%83%88%E6%95%99%E5%BE%92%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2192363%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CLINGO-LABEL%3Ei.MX%208%E3%83%95%E3%82%A1%E3%83%9F%E3%83%AA%20%7C%20i.MX%208QuadMax%E2%80%AF(8QM)%20%7C%208QuadPlus%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ESecurity%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2195401%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20OpenSSL%203%20and%20black%20key%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2195401%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E7%A4%BE%E5%86%85%E3%81%AE%E3%82%BB%E3%82%AD%E3%83%A5%E3%83%AA%E3%83%86%E3%82%A3%20%E3%83%81%E3%83%BC%E3%83%A0%E3%81%AB%E3%82%82%E7%A2%BA%E8%AA%8D%E3%81%97%E3%81%BE%E3%81%97%E3%81%9F%E3%81%8C%E3%80%81OPTEE%20%E3%81%AA%E3%81%97%E3%81%A7%E3%81%AF%E8%82%AF%E5%AE%9A%E7%9A%84%E3%81%AA%E5%9B%9E%E7%AD%94%E3%81%AF%E5%BE%97%E3%82%89%E3%82%8C%E3%81%BE%E3%81%9B%E3%82%93%E3%81%A7%E3%81%97%E3%81%9F%E3%80%82%3C%2FP%3E%0A%3CBR%20%2F%3E%0A%3CP%3E%E3%82%88%E3%82%8D%E3%81%97%E3%81%8F%E3%81%8A%E9%A1%98%E3%81%84%E3%81%97%E3%81%BE%E3%81%99%E3%80%82%3C%2FP%3E%0A%3CP%3EHarvey%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2193789%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20OpenSSL%203%20and%20black%20key%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2193789%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E5%8F%AF%E8%83%BD%E3%81%A7%E3%81%82%E3%82%8C%E3%81%B0%E3%80%81OPTEE%20%E3%82%92%E4%BD%BF%E7%94%A8%E3%81%99%E3%82%8B%E5%BF%85%E8%A6%81%E3%81%8C%E3%81%AA%E3%81%84%E3%82%88%E3%81%86%E3%81%AB%E3%81%97%E3%81%9F%E3%81%84%E3%81%A8%E8%80%83%E3%81%88%E3%81%A6%E3%81%84%E3%81%BE%E3%81%99%E3%80%82%3CBR%20%2F%3E%E3%81%9D%E3%82%8C%E3%81%8C%E5%8F%AF%E8%83%BD%E3%81%8B%E3%81%A9%E3%81%86%E3%81%8B%E3%81%94%E5%AD%98%E7%9F%A5%E3%81%A7%E3%81%99%E3%81%8B%EF%BC%9F%3CBR%20%2F%3E%3CBR%20%2F%3E%E5%B0%8A%E9%87%8D%E3%81%99%E3%82%8B%E3%80%81%3CBR%20%2F%3E%E3%82%AD%E3%83%AA%E3%82%B9%E3%83%88%E6%95%99%E5%BE%92%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2193302%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%20translate%3D%22no%22%3ERe%3A%20OpenSSL%203%20and%20black%20key%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2193302%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%3CP%3E%E3%81%93%E3%82%93%E3%81%AB%E3%81%A1%E3%81%AF%E3%80%81%3C%2FP%3E%0A%3CP%3E%3CA%20href%3D%22https%3A%2F%2Fwww.nxp.com%2Fdocs%2Fen%2Fuser-guide%2FUG10163.pdf%22%20target%3D%22_self%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3EUG10163.pdf%3C%2FA%3E%E3%81%AE%E3%82%BB%E3%82%AF%E3%82%B7%E3%83%A7%E3%83%B3%20%26lt%3B10.4.8%20OpenSSL%20TLS%20%E3%82%AA%E3%83%95%E3%83%AD%E3%83%BC%E3%83%89%E3%81%8B%E3%82%89%20OP-TEE%20PKCS%2311%20%E3%81%B8%E3%81%AE%20pkcs11-%E3%83%97%E3%83%AD%E3%83%90%E3%82%A4%E3%83%80%20%E7%B5%8C%E7%94%B1%E3%81%AE%E3%82%AA%E3%83%95%E3%83%AD%E3%83%BC%E3%83%89%26gt%3B%20%E3%81%8C%E5%8F%82%E8%80%83%E3%81%AB%E3%81%AA%E3%82%8B%E3%81%93%E3%81%A8%E3%82%92%E6%9C%9F%E5%BE%85%E3%81%97%E3%81%BE%E3%81%99%E3%80%82%E5%BD%B9%E3%81%AB%E7%AB%8B%E3%81%A4%E3%80%82%3C%2FP%3E%0A%3CBR%20%2F%3E%0A%3CP%3E%E3%82%88%E3%82%8D%E3%81%97%E3%81%8F%E3%81%8A%E9%A1%98%E3%81%84%E3%81%97%E3%81%BE%E3%81%99%E3%80%82%3C%2FP%3E%0A%3CP%3EHarvey%3C%2FP%3E%3C%2FLINGO-BODY%3E