On 30/05/2012 11:42, Alon Bar-Lev wrote:

> PKCS#11 is weak in term of privileges, not always it is possible to
> access the complete feature set via this interface without proprietary
> extensions.
IIRC, that's why profiles are needed when you use the card, not only
when you initialize it, right? But shouldn't a copy of the ACLs be
stored in PKCS15 metadata so it's parseable after init w/o requiring the
profile?

And shouldn't SO-PIN be just another PIN (on MyEID card it have id ff,
on others cards it might be different) so that you can specify it in
profile?

BYtE,
 Diego.
_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to