logo       

Re: Ceres card question: msg#00251

encryption.opensc.devel

Subject: Re: Ceres card question

El mar, 29-03-2005 a las 13:25, Bud P. Bruegger escribió:
> Hello, particularly to Spanish contributors,
>
> I was trying to learn more about the CERES card and found here
> http://www.cert.fnmt.es/pilotos/tarjetatext.htm#chip_ST
> (just above the link location), that the card is PKCS#15.
Yes and no:

There are several incompatibilities:
- Use of data compression in some files
- FileID changes in filesystem structure
- Data size in bytes instead of bits

Most of the differences are due to the fact that Ceres support was
first done to work with M$ CryptoAPI without other OS's in mind

> Does this mean that the file system of the card has become public? Could
> you provide me with a link
> where to find detailed information?

http://opensc-ceres.software-libre.org

You will find there an opensc-0.8.1 based version of OpenSC
modified to work with Ceres Cards. Note that there are two
propietary modules dinamically linked: one is for card-level
control and the other is for pkcs15-init intrinsics

In sources You'll find a pkcs15.profile file sligtly different
from official one...

> I would be particularly interested in some information on what
> to find on the card, following (the more technical section of)
> this template
> (http://porvoo7.fjarmalaraduneyti.is/media/Porvoo7/Country_updates_template.ppt)
>
> but maybe going in more detail...
>

A remark:
Ceres is not really a eID card: is just the Official SmartCard
provided by FNMT-RCM ( our money maker :-), CERES, an internal
dept of FNMT is the Official National Certification Authority
in Spain (althought there are many public and privates CA's)

Unfortunately I'm not allowed to distribute source code of
propietary modules: We at HispaLinux ( the spanish linux user
group ) are trying to get it free but, honestly, I cannot
give you any roadmap. Moreover: due to recent changes in our
gov and CERES staff, FNMT refuses to provide any additional
information, needed to develop an alternate full-free
implementation.

Expect this will be usefull for you
Cheers

Juan Antonio Martinez

--
Jonsy (teleline) <jonsito@xxxxxxxxxxx>
Teleline

Attachment: signature.asc
Description: Esta parte del mensaje =?ISO-8859-1?Q?est=E1?= firmada digitalmente

_______________________________________________
OpenSC-devel mailing list
OpenSC-devel@xxxxxxxxxx
http://www.opensc.org/cgi-bin/mailman/listinfo/opensc-devel
<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise