Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Re-work sigul to support using pesign with HSMs #3

Open
jeremycline opened this issue Dec 20, 2024 · 0 comments
Open

Re-work sigul to support using pesign with HSMs #3

jeremycline opened this issue Dec 20, 2024 · 0 comments

Comments

@jeremycline
Copy link
Member

At the moment, sigul doesn't use pesign with an HSM and this is apparently a requirement for anything signed with the cert baked into a Microsoft-signed shim.

We need to adjust Sigul to support this and then ensure any adjustments on the client side also happen here. It might be that we can avoid making any changes outside of the server have of Sigul itself since it seems reasonable that it can tag particular keys as residing in an HSM and thus knows to adjust its pesign call without the client knowing or caring.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant