Hello,

did you create the hashlinks to your certificates?

Kind regards,
Dominik Fischer

Am 05.04.2011 um 11:00 schrieb Jean-Michel Pouré - GOOZE:

> Dear friends,
> 
> I am still having problems configuring pam PKCS#11 with OpenSC.
> 
> CAcert root certificates:
> http://www.cacert.org/certs/class3.crt
> http://www.cacert.org/certs/class3.crt
> 
> are installed in:
> /etc/pam_pkcs11/cacerts
> 
> Then I run pkcs11_listcerts
> 
> DEBUG:pkcs11_lib.c:1613: Found 3 certificates in token
> Found '3' certificate(s)
> Certificate #1:
> - Subject:   /CN=CAcert WoT User/emailAddress=j...@poure.com
> - Issuer:    /O=CAcert Inc./OU=http://www.CAcert.org/CN=CAcert Class 3
> Root
> - Algorithm: rsaEncryption
> DEBUG:cert_vfy.c:338: Adding hashdir lookup to x509_store
> DEBUG:cert_vfy.c:350: Adding hash dir '/etc/pam_pkcs11/cacerts' to
> CACERT checks
> verify_certificate() failed: certificate is invalid: unable to get local
> issuer certificate
> 
> Any idea?
> 
> Kind regards,
> -- 
>                  Jean-Michel Pouré - Gooze - http://www.gooze.eu
> 
> _______________________________________________
> opensc-devel mailing list
> opensc-devel@lists.opensc-project.org
> http://www.opensc-project.org/mailman/listinfo/opensc-devel

_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to