[Opendnssec-develop] proposed libhsm API

Rickard Bondesson rickard.bondesson at iis.se
Thu Apr 23 09:57:40 UTC 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

======== Missing

Defining return values (succes/failure/...)

======== hsm_key_t **hsm_list_keys(void);

Is this usefull? Since we only know the UUID. Return value uuid_t**?

======== const hsm_key_t *hsm_find_key_by_uuid(uuid_t uuid);

Should be uuid_t *uuid

======== const hsm_key_t *hsm_generate_rsa_key(unsigned int keysize);

Keysize in PKCS#11 is unsigned long.

Do we want the possibility to specify the exponent? Or just use the default value of 65537?

> p.s. I like 'libhsm'.  IMHO 'libkey' is too generic.

+1

// RIckard
-----BEGIN PGP SIGNATURE-----
Version: 9.8.3 (Build 4028)
Charset: utf-8

wsBVAwUBSfA7lOCjgaNTdVjaAQjsHQgAjZmkc1oSz85G+g8mRQMnDc9KKIgR1KZG
g0FzkTMIQisLePXNNNHrzDCmdnXNwUMjHUxSuDaXt7aZ8QDOxPJzbPHZVweGU3RR
+rEt8dOwwPriqGt+EtG9voJ3H2DHSyNSdsFJ61B3ePmXu10T3D3U5chraFz+NCs1
YhIX5DjhEq+iAbzOMcv3rNecEYL9tJMEqmawDNE5kpbz+YmG6RJ2oLS7Af4V69SA
+twXIGgkVkLXyF8fngdaTvQXWDhfKpW7MrU02s2RR+53cKRCGnxVyzdla1zowSU6
lJADQfnpA0D8e7B+uOueUdP0Wf4W70l7Oh4Jw/vrXJIabDigebj3oA==
=GkXR
-----END PGP SIGNATURE-----



More information about the Opendnssec-develop mailing list