logo       

Re: Eutron regressions in 0.11.0 ?: msg#00049

encryption.opensc.user

Subject: Re: Eutron regressions in 0.11.0 ?

Am Dienstag, 30. Mai 2006 23:49 schrieb Nils Larsch:
> Wolfgang Glas wrote:
> > Am Montag, 29. Mai 2006 22:23 schrieb Nils Larsch:
> >> Wolfgang Glas wrote:
> >> ...
> >>
> >>> # pkcs15-init -E -C
> >>>
> >>> This command asked me for the unspecified PIN 115 (0x73) and I tried to
> >>> enter the factory default SO PIN several times, which was a fatal
> >>> error, because after contacting Eutron support I received their tool to
> >>> reset the token (see: doc/euton.html in the openct ditribution), but
> >>> this tool is unable to reset the token anyways, because I obviously
> >>> blocked this factory-default transport PIN, which is undocumented and a
> >>> secret of Siemens Italia.
> >>
> >> just out of curiosity: what does cardos-info give you ?
>
> ..
>
> > System keys: StartKey (version 0xff, retries 10)
>
> don't know how you define "transport PIN" but the startkey doesn't
> seem to be blocked (and I guess it's 0xff:0xff...:0xff hence not
> really secret anymore) but I guess you've blocked the pin which
> afaik protects the DELETE AC for the MF (~ root directory)
>
> >>> 6) However, when I try to generate a private key using opensc-0.11.0
> >>> and the PIN I generated with opensc-0.9.6, I get the follwing errors:
> >>>
> >>> # pkcs15-init -G rsa/1024 -a 1 -i 46 -u sign
> >>> card-cardos.c:225:cardos_check_sw: invalid parameters in data field
> >>> card.c:376:sc_create_file: returning with: Incorrect parameters in APDU
> >>> Failed to generate key: Incorrect parameters in APDU
> >>
> >> would be interesting to see the APDU log (note: APDU logging needs to be
> >> enabled in the config due to security reasons) to find out what the
> >> exact problem is
> >
> > ... The APDU log of the above command for my ITSEC-I is in the file
> > opensc-ITSEC-I.log located in the attached tar.gz archive.
>
> ok, the creation of a temporary file has failed ... what does a
> "cd 5015" + "ls" give you when using the opensc-explorer tool ?
>
Here's the output of opensc-explorer for my ITSEC-I:

**************snippet***************
/home/wglas > opensc-explorer
OpenSC Explorer version 0.11.0
OpenSC [3F00]> cd 5015
OpenSC [3F00/5015]> ls
FileID Type Size
4401 wEF 256
5031 wEF 256
5032 wEF 42
4946 wEF 128
4402 wEF 256
3048 wEF 142
4403 wEF 256
7EAD wEF 512
OpenSC [3F00/5015]> quit
/home/wglas >
**************end of snippet***************

Wolfgang

--
Dr. Wolfgang Glas ev-i Informationstechnologie GmbH.
Geschäftsführer Sebastian-Kneipp-Weg 17
wolfgang.glas@xxxxxxx A-6020 Innsbruck/Austria
phone: +43-512-284883-2 +43-699-12665927 fax: +43-720-699931


<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

News | FAQ | advertise