Am Mittwoch 28 Januar 2009 19:02:39 schrieb Stanislav Brabec:
> In case of Smart Cards, it might be GID writability for "scard" group,
> allowing to run smart card daemon without root privileges.

if pcscd or openct should run as non-root, then there should be:
* one way how openct/pcscd can access the serial and usb devices
   (please document what users with serial smart card readers need to do)
* one way how users allowed to access the readers can connect to openct/pcscd

I think these two things should be kept seperated, and "scard" is already used 
for the later case.

on the other hand I was made aware off, that tools like the cyberjack debug 
tools, or applications using the ct-api interface such as moneyplex still need
to access the usb devices directly.

I think accessing usb smart card readers directly is a very old and outdated
design (forgive me for using the word "stupid" earlier), but we can't help
if major applications still work that way and know no alternative.

Regards, Andreas
_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to