Vault HSM Ed25519 Signing

280 views
Skip to first unread message

Joshua Edwards

unread,
Nov 13, 2018, 11:42:33 AM11/13/18
to Vault
Hey there,

I am wondering if vault offers hsm Ed25519 signing?

I am being told otherwise but I am sure I can see Ed25519 being used in vaults documentation.

Further reference to the discussion - https://github.com/tendermint/kms/issues/92 

Thanks!
Josh

Jeff Mitchell

unread,
Nov 13, 2018, 12:25:51 PM11/13/18
to vault...@googlegroups.com
Hi,

As the person on the ticket says, we don't use HSMs for signing. The actual keys can be protected by an HSM but the signing is done in software.

Best,
Jeff

--
This mailing list is governed under the HashiCorp Community Guidelines - https://www.hashicorp.com/community-guidelines.html. Behavior in violation of those guidelines may result in your removal from this mailing list.
 
GitHub Issues: https://github.com/hashicorp/vault/issues
IRC: #vault-tool on Freenode
---
You received this message because you are subscribed to the Google Groups "Vault" group.
To unsubscribe from this group and stop receiving emails from it, send an email to vault-tool+...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/vault-tool/3caccb3a-4f08-41e8-baf5-2b48d993587c%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Joshua Edwards

unread,
Nov 13, 2018, 12:35:04 PM11/13/18
to Vault
Hey Jeff,

Thanks for clarifying, do you think this option will ever become available? I can see a lot of blockchain use cases?

Thanks
Josh

Jeff Mitchell

unread,
Nov 13, 2018, 12:36:33 PM11/13/18
to vault...@googlegroups.com
Hi Joshua,

Lots of blockchain startups use Vault. Not all of them require an HSM to do the crypto operations. (In fact, most are happier for it to be in software since they can inspect the code performing the operation).

Best,
Jeff

Reply all
Reply to author
Forward
0 new messages