PKCS #11 and FIPS 140-3 (S30b)
FIPS-140-3 create new requirements beyond FIPS-140-2. A number of cryptographic modules use the PKCS #11 layer as their cryptographic boundary, so sometimes those requirements need to be reflected in the PKCS #11 API. I’ll discuss some of those issues and potential solutions to them. This talk would be targetting developers of cryptographic modules.