Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why would they nées certification ?


Stodgy, conservative organisations like banks and the military created the market for hardware security modules, FIPS-140 dongles, smartcards, TPMs and so on.

And they couldn't care less about sticking it to the NSA by rejecting the NIST curves. Whereas if you say "government standards compliant military grade encryption" they like that a lot.

If you aren't one of those organisations, but you'd still like to use a HSM/TPM/smartcard, no Curve25519 for you.


> Why would they nées certification ? Compliance with regulation .. things like ISO, PCI, etc.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: