OptionalkeyOptionalpolicyOptionalprivateThe user's private key as a raw PEM string.
prefer keyOperations: a raw PEM in application
code is exactly what the opaque key work is moving away from (a
one-line migration: keyOperationsFromPrivateKey(readPrivateKey(file))
from node-opcua-crypto). Exactly one of privateKey / keyOperations
must be set (checked at ActivateSession time).
The user's key as an opaque sign-capable object (
IKeyOperationsfrom node-opcua-crypto) — the user token signature is produced by the provider, and the key itself may live in an HSM/KMS/smartcard.