Re: IBM Crypto Accelerator
You may want to ask this question on Marist's linux-390 mailing list. There are numerous people on that list that could probably help you. Another possible resource is the opencryptoki-users mailing list for users of OpenCryptoki and libica (
The only other starting point I have is that a coworker tells me that SSH on SLES 9 SP3 uses hardware crypto support somehow so you could investigate that and see how it's done (probably via OpenSSL and libica).
On 7/27/06, Hugo Monteiro <firstname.lastname@example.org> wrote:
i've managed to get the crypto hardware device recognized in the VM
machines, and i've read the few information available on mailing lists
regarding it's use. From what i understood, the use of this device by
the webserver apache is pretty straight forward. Happens that i'd like
to use the hw crypt accel in several other services which make use of
ssl connections, such as pop3s, ldap, etc.
I've compiled the ibmca openssl lib which is part of openssl, and i've
read that it's use would be as simple as loading the engine in runtime.
I have then loaded it with the following command
openssl engine dynamic -pre SO_PATH:./libibmca.so -pre ID:ibmca -pre
>From the output i got that the engine was successfully loaded, but i
have no evidence that is in fact being used. Neither the content
of /proc/driver/z90crypt changed, or the load of the machine lowered, or
i can see
libibmca.so listed in lsof.
Can someone point me out some directions for the use of the ibmca
routines in general?
Thanks in advance,
ci.fct.unl.pt:~# cat .signature
Email : email@example.com
Telefone : +351 212948300 Ext.15307
Centro de Informática
Faculdade de Ciências e Tecnologia da
Universidade Nova de Lisboa
Quinta da Torre 2829-516 Caparica Portugal
Telefone: +351 212948596 Fax: +351 212948548
To UNSUBSCRIBE, email to debian-s390-REQUEST@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact