make RSA and DSA operations throw MISSING_PRIVATE_KEY if needed, adapt ECDSA