On Wednesday 15 August 2007 04:15:59 Siddhartha Kasivajhula wrote:
> So I continued to follow the directions on the OpenSC QuickStart page, and
> I was able to create the certificate file req.pem. And I was also able to
> put the certificate onto the card as instructed.
>
> How do I verify that the certificate is on the card?

pkcs15-tool can list the certificates and extract them.

> I was trying to run "verify" in opensc-explorer, but I entered the wrong
> password too many times and now it says "authentication locked"!

pkcs15-tool can unblock your pin if you know the puk.
if not you can try to format the card with pkcs15-init and delete
keys and certificates in the process, and then generate new keys
or store them once more.

> What is the correct format for the "verify" command?

pin characters as hex. "1" becomes 31. "1234" would be "31:32:33:34".
beware: some cards need padding etc. pkcs15-tool takes care of all that.
if you use opensc-explorer, you need to take care of it yourself.

> Also, if I want to clear the card and reinitialize it, would I use
> "pkcs15-init --erase-card"?

yes.

Regards, Andreas
_______________________________________________
opensc-devel mailing list
[email protected]
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to