Hi,

quick reply...

For user certificate: you have to install the smartcards/usb tokens drivers
on the users' machines. Then, when the user requests the certificate, she
has to select the smartcard's driver/provider.

For the RA certificate: same as for the user certificate. You can also import
the certificate into the smartcard once it is issued.

For the CA certificate: you will have to configure your openssl to use the
smartcard via the pkcs11 engine. Then you will have to configure the OpenCA's
token to use it. Usually on CAs, because smartcards are really slow, to use
keys on crypto hardware you usually use more expensive equipment (e.g., HSMs).


Later,
Max


MMDZ wrote:
Hello!!

I configured openca and it works nice.
But I have another question about saving user certificates.

How is it possible to save user certificates / ca certificate and ra
certificate on a smart card??
Is it possible?

I am using Ubuntu 7.1 and Firefox as Browser

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

------------------------------------------------------------------------------
_______________________________________________
Openca-Users mailing list
Openca-Users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to