gpg with Amazon CloudHSM

Werner Koch wk at gnupg.org
Mon Dec 29 11:29:33 CET 2025


Hi!

> No experience, but they list known issues below, with a specific page
> for PKCS #11

GnuPG has no support for using a smardcard or HSM via PKCS#11.  What we
have is a pkcs#11 provider so that gpg-agent/scdaemon can be used by
pkcs#11 aware applications.

What we do instead is to implement the access to smartcards directly
using the native APDU interface.  We have a feature request to use a
pcks#11 driver as backend: https://dev.gnupg.org/T6234 however the
customer canceled the project and thus we have no use/business case for
this.



Salam-Shalom,

   Werner

-- 
The pioneers of a warless world are the youth that
refuse military service.             - A. Einstein
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openpgp-digital-signature.asc
Type: application/pgp-signature
Size: 284 bytes
Desc: not available
URL: <https://lists.gnupg.org/pipermail/gnupg-users/attachments/20251229/f354cdda/attachment-0001.sig>


More information about the Gnupg-users mailing list