< Return to Ballot details

Vote Details

Ballot: CKM_SEAL_KEY
Company:
Symantec Corp.
Vote:
Accept for V2.40 of PKCS #11
Comment:
I think it is important to standardize functionality to export an opaque blob representing any key.

I vote YES for the general feature with understanding that the raised issues will be fixed.

Security of CKM_SEAL_KEYS must be the tightest, so that it's always an on-token, never-extractable, AES-256 key (that doesn't degrade the security of the exported key).