List Info

Thread: Storing a certificate using PKCS#11.




Storing a certificate using PKCS#11.
country flaguser name
Austria
2007-03-05 14:44:22
Hi all,

  Recently I figured out, that I need the pkcs15-onepin
profile in order
to get a chance to store a certificate onto the token using
PKCS#11,
because PKCS#11 has no concept of being authenticated in two
ways
simultaneously.

  So I initialized my cardos 4.3b card using:

pkcs15-init -C -p pkcs15+onepin -l $card_id --pin=$pin
--puk=$puk
pkcs15-init -G rsa/2048 -a 45 -a 1 -u $key_usage -l
privkey01
--public-key-label pubkey01 --pin=$pin

  Afterwards, I used opensc-java's PKCS11 proviedr in order
to store a
JAVA-generated certifcate to the token and I earne a
CKR_GENERAL_ERROR.

  The opensc log-file is attahed. I use opensc-0.11.2-pre3.

  Any help is kindly appreciated.

    TIA, Wolfgang


_______________________________________________
opensc-devel mailing list
opensc-devellists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc
-devel
  
Re: Storing a certificate using PKCS#11.
user name
2007-03-05 16:06:33
to be honst: no idea if storing cert via pkcs11-tool
or pkcs#11 api was ever implemented or tested.

Andreas
_______________________________________________
opensc-devel mailing list
opensc-devellists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc
-devel

[1-2]

about | contact  Other archives ( Real Estate discussion Medical topics )