I guess the pkcs11-tool is just an example for signing and I would have to come up with a way to calculate the digest and stitch everything back together myself, don’t I?
Am 15.11.2023 um 19:35 schrieb Jan Claußen jan.claussen10@web.de:
I had no luck today with the HSM signing. Neither with the described solution using the pkcs11-tool or openssl with the pkcs11 engine. I also wonder if the header in the documentation will be the same in any case or if I have to prepend my own header. This part is not documented. Would be great if some could get back to me regarding this!
Am 15.11.2023 um 17:56 schrieb Jan Claußen jan.claussen10@web.de:
The example shell script for the pkcs11-tools does not work btw. This could be fixed!