On Wednesday 15 August 2007 04:15:59 Siddhartha Kasivajhula wrote: > So I continued to follow the directions on the OpenSC QuickStart page, and > I was able to create the certificate file req.pem. And I was also able to > put the certificate onto the card as instructed. > > How do I verify that the certificate is on the card?
pkcs15-tool can list the certificates and extract them. > I was trying to run "verify" in opensc-explorer, but I entered the wrong > password too many times and now it says "authentication locked"! pkcs15-tool can unblock your pin if you know the puk. if not you can try to format the card with pkcs15-init and delete keys and certificates in the process, and then generate new keys or store them once more. > What is the correct format for the "verify" command? pin characters as hex. "1" becomes 31. "1234" would be "31:32:33:34". beware: some cards need padding etc. pkcs15-tool takes care of all that. if you use opensc-explorer, you need to take care of it yourself. > Also, if I want to clear the card and reinitialize it, would I use > "pkcs15-init --erase-card"? yes. Regards, Andreas _______________________________________________ opensc-devel mailing list [email protected] http://www.opensc-project.org/mailman/listinfo/opensc-devel
