Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Prepare key storage computer for use.
  2. Connect and verify RNG.
  3. Use the RNG to create and set a static password in the two yubikeys. 
  4. Generate RSA 4096 bits and ECC 384 bits keypairs , encrypt using yubikey in static mode.
  5. Decrypt RSA private key using yubikey in static mode, temporarily stored in /dev/shmCreate certificate requests using keypair.
  6. Issue self-signed certificate using keypair.
  7. Copy the keys to two USB sticks.
  8. Generate sha1 and sha256 fingerprint of certificate.
  9. Copy the RSA certificate to a USB stick and send it to the eduGAIN OT.  
  10. Shutdown key storage computer.

...