Hello, On Feb 13, 2011, at 2:59 PM, NdK wrote: > > $ pkcs15-init -S startssl.p12 -f PKCS12 -i 45 -a 2 -l "StartSSL auth" > Using reader with a card: Gemalto GemPC Twin 00 00 > error:23076071:PKCS12 routines:PKCS12_parse:mac verify failure Is this error normal? Does it happen with OpenSSL command line tools or other software?
> IIUC -i can only be 45 ("normal") or 46 ("non repudiation")... But to be > sure I tried w/ different IDs, too, but got the same result. The ID has no real meaning AFAIK, I don't know from where the 45 and 46 come from. What is your source? > Private RSA Key [StartSSL auth] > ID : 45 > > Private RSA Key [ndk****@****] > ID : 45 The software should not allow you to create two private keys with the same ID. How exactly did you end up with this card, do you have the commands, starting from initialization? -- @MartinPaljak.net +3725156495 _______________________________________________ opensc-devel mailing list opensc-devel@lists.opensc-project.org http://www.opensc-project.org/mailman/listinfo/opensc-devel