Andreas, 1.) I also found it odd that the pkcs#15 routines are being used but assumed that was just an emulation abstraction. I definitely would like Doug to provide some insight into that.
2.) OK. I will set the new debug level, generate a new log file, and send it to you. 3.) It appears to be any attempt to read the certificate or get data associated with the certificate (pkcs15-cert.c:115:sc_pkcs15_read_certificate OR card-piv.c:752:piv_handle_certificate_data) 4.) Any one of the options (-L, -I, -M, -O) will work as all will attempt to parse the certificate but I will try to select one that will generate the smallest log file. -----Original Message----- From: Andreas Jellinghaus [mailto:a...@dungeon.inka.de] Sent: Tuesday, June 23, 2009 12:05 AM To: Boarman, Christopher L Cc: opensc-devel@lists.opensc-project.org Subject: Re: [opensc-devel] Ticket #189 - Problems with opensc-pkcs11.so Hi Christopher, PIV is not in PKCS#15 format, so I have little clue if there is a standard for emulating such cards or not. maybe douglas can comment on these differences. for the log file, can you set the debug level to 6 in opensc.conf? we need a huge amount of debug information to find the problem. also when does the problem usualy show up? maybe we can narrow down our search that way. e.g. when a certitifcate is read, a key is used, ...? could you try e.g. to find the option for pkcs15-tool that triggers the problem, so the resulting log file is as small as possible? Regards, Andreas _______________________________________________ opensc-devel mailing list opensc-devel@lists.opensc-project.org http://www.opensc-project.org/mailman/listinfo/opensc-devel