This commit is contained in:
shankar0123
2026-05-05 18:18:29 +00:00
parent 7888547495
commit b216de9d57
71 changed files with 95 additions and 771 deletions
+1 -1
View File
@@ -238,7 +238,7 @@ remains trusted by relying parties until its `notAfter` (typical
openssl x509 -in new-cert -noout -issuer
```
**Future:** when the HSM/PKCS#11 driver bundle (`cowork/hsm-pkcs11-
**Future:** when the HSM/PKCS#11 driver bundle (planned;
driver-prompt.md`) ships, this rotation procedure changes
substantially — the HSM-backed key never moves, only the cert wrap
rotates. The signer interface seam is the load-bearing prerequisite