public inbox for [email protected]  
help / color / mirror / Atom feed
From: Andreas Heijdendael <[email protected]>
To: Pgsql-admin <[email protected]>
Subject: Postgres & PKCS11 shenanigans
Date: Sat, 10 Aug 2024 16:00:47 +0200
Message-ID: <[email protected]> (raw)

Hi fellow postgres enthusiasts,

Been trying to get PKCS11 to work on my PG14 installation but to no 
avail so far.
Included the [engines] section in my openssl.cnf configuration which 
includes links and configuration to the HSM hardware API (Cryptoki.so). 
But it will not budge when I fill in the PKCS11 URI into the Private Key 
location in postgres.conf.

Has any of you got this to work? I can't find anything about it online.

Postgres version: 14

HSM: Thales Protectserver PL1500

Running on Ubuntu 22.04.

Greetings,

Andreas







reply

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Reply to all the recipients using the --to and --cc options:
  reply via email

  To: [email protected]
  Cc: [email protected], [email protected]
  Subject: Re: Postgres & PKCS11 shenanigans
  In-Reply-To: <[email protected]>

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

This inbox is served by agora; see mirroring instructions
for how to clone and mirror all data and code used for this inbox