Hello,

On 11.01.2011 13:32, Aventra development wrote:
What do you think about the possibility that when a card is initialized using 
pkcs15-init that it would create the whole structure that is defined in the 
profile used.
Currently it only creates the necessary files during initialization, but not 
any private or public key DIR files etc, that are essential when actually using 
the card.

It can be and, imho, has to be done.
There is no need of additional configuration option --
condition to create xDF files during initialization is its 'CREATE' operation 
protected by SOPIN.

In your profile, do you have different 'CREATE' ACLs for xDF and object data 
(for ex. certificates) files?


After initialization the SO-PIN might not be given to the end user, since it 
might give them too much power over the card content and accidentally might 
mess it up.

Kind regards,
Toni

Kind wishes,
Viktor.




_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel


--
Viktor Tarasov <viktor.tara...@opentrust.com>
_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to