Hi Jorge,

> Has somebody used SmartCards with OpenCA to distribute user certificates?
several people did - but its mainly not an OpenCA issue...

There are two possible scenarios:
1) Users create the certificates on the smart-card their own - all you need i to integrate the cards in the user's browser - everything else is as with "soft-keys" and handled by the browser

2) a central department creates the cards - in this case you either do the same like in a) or you use the batch module. The batch itself is currently unable to create certificates on the card but can provide you a bunch of keys that you can install on the cards (mind that keys are created outside the card!). They other alternative is to write a script yourself that create csr's using the cards and producing data that can be read by the batch....but you will need to touch the card two times in this situation

Oliver

--
Diese Nachricht wurde digital unterschrieben
oliwel's public key: http://www.oliwel.de/oliwel.crt
Basiszertifikat: http://www.ldv.ei.tum.de/page72

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to