This forum is closed to new posts and
responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:
RE: Response from Aladdin ~Umberto Nongeroson 6.Dec.02 09:26 PM a Web browser Notes Client 6.0Windows XP
Did they give you which mechanisms were supported in hardware (not just in their software drivers), and what functions were supported/flags were set with those mechanisms?
The full mechanism list eTPKCS11 supports is:
CKM_MD5,
CKM_DES_ECB,
CKM_DES_CBC,
CKM_DES_CBC_PAD,
CKM_DES_KEY_GEN,
CKM_RSA_X_509,
CKM_RSA_PKCS,
CKM_RSA_PKCS_KEY_PAIR_GEN,
CKM_SHA_1,
CKM_DES3_ECB,
CKM_DES3_CBC,
CKM_DES3_CBC_PAD,
CKM_DES3_KEY_GEN,
CKM_PBE_SHA1_DES3_EDE_CBC,
CKM_MD5_HMAC,
I would be surprised if any of those mechanisms but the three in red were implemented in hardware -- all of the systems that I've seen that support symmetric crypto (DES/3DES) and hashing (SHA/MD5) only support those mechanisms in software. Since they didn't distinguish between those mechanisms in any way, it's hard to extrapolate what they actually support.
Unfortunately, the odds are good that even Aladdin's tech support personnel couldn't give you the contents of the mechanismInfo structure describing the CKM_RSA_PKCS mechanism, which is what I really need.