Closed dmihalcik-virtru closed 5 months ago
Suggestion: Try using wolfio image instead
@dmihalcik-virtru is it possible to delay this or use an image that already has this to meet our milestone?
@biscoe916 and @dmihalcik-virtru met and decided to not implement this currently since it will require a base image. SoftHSM was a means to support real HSM, but caused delay.
The decision was to pull this out and resolve when we better understand the downstream (DSP) customer needs.
Softhsm won't be included in the platform build and only used within ci for testing.
We need to access HSMs for the key access service (KAS). For now, we will emulate the behavior with SoftHSM. Since we are using chain guard images, we will have to do the folliwing:
/usr/lib/softhsm/libsofthsm2.so
), ubuntu (/lib/softhsm/libsofthsm2.so
) or homebrew ($(brew --prefix)/lib/softhsm/libsofthsm2.so
)