> Ideally you'd want your TLS keys to be stored in an HSM
Does an open spec HSM module exist? I can be somehow sure that linux and apache/nginx don't have backdoors as the source is audited by many people, but I need to be "sure" of my HSM too.
Does an open spec HSM module exist? I can be somehow sure that linux and apache/nginx don't have backdoors as the source is audited by many people, but I need to be "sure" of my HSM too.
opencryptoki has a softhsm too, but again, it appears to run in process. Same problems.
> You can use it to explore PKCS #11 without having a Hardware Security Module.