Re: OpenSSL

> Why can't we have this instead? You could even automate the certificate creation part and there would be no need for any centralized user tracking center.

That's basically what this is, just wrapped up in some sort of hardware token.

In fact, that's basically what your Yubikey or FIDO key is too

