Am Montag 01 März 2010 11:53:29 schrieb Viktor TARASOV: > All my respects to this driver, the ancestor of many current drivers. It > took me a certain time to get know how it works. > Yes, it will break multiple PINs for 'flex' cards -- for this card only > two local PINs per DF are possibles. > But, does the multiple PINs functionality is really asked for (for this > card)?
some people on the list seem to use it - even complained how few pins / keys / certificates where possible (with size tuning I more should be possible). is "pin domain" the name for the "lets create a subdir for each pin and put stuff protected by that pin in there" feature? if I understand you correctly, that is not possible without "pin domain". or is it, with global instead of local pins? what exactly is the difference of global vs. local pins from pkcs#11/15 point of view? IIRC some cards have the pins in the filesystem hierarchy, only files in the dir with the pin (or subdirs) can be protected with it. other cards have global security objects - not sure if it matters at all where they are stored/created/are independend of the selected directory. (cardos IIRC) Regards, Andreas _______________________________________________ opensc-devel mailing list [email protected] http://www.opensc-project.org/mailman/listinfo/opensc-devel
