tpm2-pk11
tpm2-pk11 copied to clipboard
mod_nss support
Great project. Can it be used for mod_nss integration?
Currently only the functions required by OpenSSH are implemented. Unless mod_nss uses the same subset of functions it probably won't work. Notice a TPM is designed for mass signing. It can took a second for signing is therefore not very usable for securing private keys of servers. Unless there are a very small number of users and the agreed session key is cached for new connections.