NSS for PKINIT, in-progress patches available, feedback sought

Nalin Dahyabhai nalin at redhat.com
Thu Sep 8 18:16:11 EDT 2011

On Thu, Sep 08, 2011 at 02:56:46PM -0400, Sam Hartman wrote:
> Painless Security is working on pkinit algorithm agility patches.  Our
> statement of work only includes openssl support and assumes that the new
> KDF will be provided by each crypto implementation.  My assumption is
> that our patches will land on trunk first.  You should plan on
> implementing the pkinit algorithm agility KDF for NSS.

Thanks for the heads-up.  I'll take a closer look at the draft in
anticipation of the patches.


More information about the krbdev mailing list