Skip to content

Possible to use offline without connecting to webserver? Also, ephemeral keystorage? #59

Answered by polhenarejos
eldondevat asked this question in Q&A
Discussion options

You must be logged in to vote

It can be initialized completely offline. In other words, you do not need the online PKI to upload the attestation certificate. During the initialization, the Pico HSM generates a self-signed certificate for attestation. Later, it is replaced by the online one signed by the the CA but this is not a mandatory step to make it work.
You can initialize the device by using other tools such as SCS3 or OpenSC. If you are not interested in providing attestation, then is not relevant to you.

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@eldondevat
Comment options

@polhenarejos
Comment options

Answer selected by eldondevat
@eldondevat
Comment options

@polhenarejos
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants