[gnutls-dev] Lack of documented standard for exporting DSA priv_keys in PKCS8 format??

Nikos Mavrogiannopoulos n.mavrogiannopoulos at gmail.com
Mon Nov 19 14:43:56 CET 2007


On Nov 19, 2007 12:17 PM, David Marín Carreño <davefx at gmail.com> wrote:
> Hi all.
>
> I'm currently developing gnoMint[1], a program for graphically managing
> a CA.
>
> I've just realized that DSA private keys cannot be exported to PKCS8
> format, "since there is no documented standard for other keys" than RSA,
> according to the manual page.
>
> However, in PKCS11 document[2], in page 248 (section 12.6), it is said
> how to wrap and unwrap, among others, DSA private keys, in PKCS#8's
> PrivateKeyInfo ASN.1 type.
>
> I don't know if this can be considered a "documented standard", but I
> think it is.

Are you sure the referenced document defines such thing? It has only 3
sections  and 26 pages.
I remember I also had problems finding this document when I was
developing it. If you can find
references to it I could implement and document it.

regards,
Nikos




More information about the Gnutls-devel mailing list