Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-29 Thread Jim Rees
Ludovic Rousseau wrote: You can also try to play with a .NET card. The associated PKCS#11 library [1] is free software. I hadn't paid any attention to this card because I assumed it was MS Windows only. But I see they claim Mac and linux compatibility. Anyone have anything good or bad to sa

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-29 Thread Ludovic Rousseau
2010/7/14 Jim Rees : > It's very frustrating to have budget to spend, and manufacturers who seem > determined to prevent me from giving them money. You can also try to play with a .NET card. The associated PKCS#11 library [1] is free software. The card should be available [2] from the USA. Bye [

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-22 Thread Peter Koch
Hi David! > Ok, thanks for the summary (depressing though it is). > > I'm beginning to suspect that for someone like myself who just wants to > test NSS/sysdb interaction with external PKCS#11 modules, my best option > is just to crawl back under my rock and write a sane PKCS#11 plugin for > a TPM

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Anders Rundgren
On 2010-07-15 14:04, Göran Melvås wrote: > But until you have a federation type of logon service like SAML or opened or > ("central" PKI like Cryptomatic or Norwegian BankID). > > You have to have multiple tokens... > Here we enter a somewhat religious area.. Personally I doubt that we will eve

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Martin Paljak
On Jul 15, 2010, at 2:53 PM, Anders Rundgren wrote: > On 2010-07-15 12:24, Jean-Michel Pouré - GOOZE wrote: >> On Thu, 2010-07-15 at 11:50 +0200, Anders Rundgren wrote: >>> It always felt like a good idea creating a card-edge standard >>> for tokens that only are used for login etc. >> IMHO, OTP

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Anders Rundgren
On 2010-07-15 12:24, Jean-Michel Pouré - GOOZE wrote: > On Thu, 2010-07-15 at 11:50 +0200, Anders Rundgren wrote: >> It always felt like a good idea creating a card-edge standard >> for tokens that only are used for login etc. > IMHO, OTP (One Time Passwords) generators, following OATH standard,

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Jean-Michel Pouré - GOOZE
On Thu, 2010-07-15 at 11:50 +0200, Anders Rundgren wrote: > It always felt like a good idea creating a card-edge standard > for tokens that only are used for login etc. IMHO, OTP (One Time Passwords) generators, following OATH standard, is a very nice solution as regards single logon. It cannot b

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Anders Rundgren
It always felt like a good idea creating a card-edge standard for tokens that only are used for login etc. That the methods for initializing cards as well as provisioning/managing credentials are even more non-standard than just "using" them was the ultimate motivator! Slightly related. I wonder

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-15 Thread Jean-Michel Pouré - GOOZE
On Wed, 2010-07-14 at 16:28 -0400, Jim Rees wrote: > The manufacturer and the European distributor seem very eager to help. Thank you. The link to the Feitian ePass PKI token is: http://www.gooze.eu/feitian-epass-pki-token Kind regards, -- Jean-Michel Pouré - Gooze - http://ww

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread David Woodhouse
On Wed, 2010-07-14 at 21:18 +0200, Andreas Jellinghaus wrote: > eToken 72k are javacard based. > thus you need: > 1.) make sure you have a special test/developer edition, where you can > store your own javacard applet. if not, you have one with the aladdin > applet on it - which works only

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread Jim Rees
Andreas Jellinghaus wrote: yes, the situation is a bit disappointing. every gread card or token that works great with opensc is no longer sold, outdated, hard to get etc. It's very frustrating to have budget to spend, and manufacturers who seem determined to prevent me from giving them mone

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread Andreas Jellinghaus
Am Mittwoch 14 Juli 2010, um 19:41:09 schrieb David Woodhouse: > On Wed, 2010-07-14 at 20:31 +0300, Martin Paljak wrote: > > http://pcsclite.alioth.debian.org/unsupported.html#0x05290x0620 > > > > It is not supported / only works without a reset. > > Thank you. With 'connect_reset=false' in opens

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread David Woodhouse
On Wed, 2010-07-14 at 20:31 +0300, Martin Paljak wrote: > > http://pcsclite.alioth.debian.org/unsupported.html#0x05290x0620 > > It is not supported / only works without a reset. Thank you. With 'connect_reset=false' in opensc.conf, I can now run 'opensc-tool -a' more than once. However, I don't

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread Martin Paljak
On Jul 14, 2010, at 6:15 PM, David Woodhouse wrote: > On Wed, 2010-07-07 at 22:13 +0100, David Woodhouse wrote: >> >> >> This wasn't what I intended to work on... I think I'll just get a >> better-supported device. :) > > OK... I now have one of these: > > Bus 002 Device 014: ID 0529:0

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread David Woodhouse
On Wed, 2010-07-14 at 17:15 +0100, David Woodhouse wrote: > I first tried reverting > to the released, allegedly supported, F-13 versions: > > pcsc-lite-1.5.5-4.fc13.x86_64 > ccid-1.3.11-1.fc13.x86_64 > opensc-0.11.13-1.fc13.x86_64 > openct-0.6.19-2.fc13.x86_64 Gr, sorry -- I still had the newer

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread David Woodhouse
On Wed, 2010-07-14 at 18:52 +0300, Kalev Lember wrote: > > Looks like you have installed pcsc-lite from rawhide on your F-13 > machine, but the ccid package is still the old one. Try updating ccid > too and see if it starts working better. Yeah, for the GnuPG v2 card I'd needed a newer ccid, and

Re: [opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread Kalev Lember
On 07/14/2010 06:15 PM, David Woodhouse wrote: > ccid-1.3.11-1.fc13.x86_64 > opensc-0.11.13-2.fc14.x86_64 > pcsc-lite-1.6.1-4.fc14.x86_64 Looks like you have installed pcsc-lite from rawhide on your F-13 machine, but the ccid package is still the old one. Try updating ccid too and see if it starts

[opensc-devel] Aladdin eToken Pro w/PKCS15 (was Re: OpenPGP card v2)

2010-07-14 Thread David Woodhouse
On Wed, 2010-07-07 at 22:13 +0100, David Woodhouse wrote: > > > This wasn't what I intended to work on... I think I'll just get a > better-supported device. :) OK... I now have one of these: Bus 002 Device 014: ID 0529:0620 Aladdin Knowledge Systems When I plug it in it first seems h