HSM outage causes root CA key loss

Stefan Kelm skelm at bfk.de
Tue Jul 14 12:10:20 EDT 2009

> http://www.heise.de/security/E-Gesundheitskarte-Datenverlust-mit-Folgen--/news/meldung/141864
> reports that the PKI for their electronic health card has just run into
> trouble: they were storing the root CA key in an HSM, which failed.  They now
> have a PKI with no CA key for signing new certs or revoking existing ones.

Actually, for a couple of days now they didn't stop pointing out that
they were still running the PKI in a test environment and that only
'a few hundred test cards' are affected... Just stupid nonetheless...



Stefan Kelm                   <skelm at bfk.de>
BFK edv-consulting GmbH       http://www.bfk.de/
Kriegsstrasse 100             Tel: +49-721-96201-1
D-76133 Karlsruhe             Fax: +49-721-96201-99

The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com

More information about the cryptography mailing list