# # Configuration file to allow the SunPKCS11 provider to utilize # the Solaris Cryptographic Framework, if it is available # name = Solaris description = SunPKCS11 accessing Solaris Cryptographic Framework library = /usr/lib/$ISA/libpkcs11.so handleStartupErrors = ignoreAll # Use the X9.63 encoding for EC points (do not wrap in an ASN.1 OctetString). useEcX963Encoding = true attributes = compatibility disabledMechanisms = { CKM_DSA_KEY_PAIR_GEN SecureRandom # the following mechanisms are disabled due to performance issues # (Solaris bug 6337157) CKM_DSA_SHA1 CKM_MD5_RSA_PKCS CKM_SHA1_RSA_PKCS CKM_SHA256_RSA_PKCS CKM_SHA384_RSA_PKCS CKM_SHA512_RSA_PKCS }