gpgsm/cms: int_rsa_verify:wrong signature length

2018-04-26 Thread Andreas Fenkart
Hi, I'm using GnuPG to sign 'swupdate' update images. They are verified on the target using openssl: gpgsm -o sw-description.sig -sb sw-description swupdate links against the openssl, but the equivalent cmd line is: openssl cms -verify -in sw-description.sig -inform DER -content sw-descript

Tamper Resistance of SmartCards -- NitroKey Pro/ KernelConcepts

2016-06-24 Thread Andreas Fenkart
Hi, I'm comparing NitroKey Pro and KernelConcepts OpenPGP card. https://shop.nitrokey.com/shop/product/nitrokey-pro-3 http://shop.kernelconcepts.de/#openpgp I'm only interested in creating signatures for FW releases. What confuses me is the claim made by NitroKey that it is "tamper resistant". I