[opensc-devel] By default don't set nonRepudiation key usage with pkcs15-init

2010-02-24 Thread Martin Paljak
Hello, Non-repudiation is technically a signature, but usually governed by a separate policy or legal framework. Thus, for "pkcs15-init --key-usage sign" (the shortcut) nonRepudiation should not be included by default. I thus propose the following change: Index: pkcs15-init.c

Re: [opensc-devel] Don't install .la files for PKCS#11 modules.

2010-02-24 Thread Alon Bar-Lev
libtool always installs these. Your packaging system should ignore. On Wed, Feb 24, 2010 at 2:33 PM, Martin Paljak wrote: > Hello. > > Current trunk installs (on OS X): > > /Library/OpenSC/lib/libopensc.2.dylib > /Library/OpenSC/lib/libopensc.dylib > /Library/OpenSC/lib/libopensc.la > /Library/Op

[opensc-devel] Don't install .la files for PKCS#11 modules.

2010-02-24 Thread Martin Paljak
Hello. Current trunk installs (on OS X): /Library/OpenSC/lib/libopensc.2.dylib /Library/OpenSC/lib/libopensc.dylib /Library/OpenSC/lib/libopensc.la /Library/OpenSC/lib/onepin-opensc-pkcs11.la /Library/OpenSC/lib/onepin-opensc-pkcs11.so /Library/OpenSC/lib/opensc-pkcs11.la /Library/OpenSC/lib/open

Re: [opensc-devel] [opensc-commits] svn opensc changed[4066] Remove openssh/ directory and our patch for openssh,

2010-02-24 Thread Andreas Jellinghaus
Am Mittwoch 24 Februar 2010 10:19:29 schrieb Martin Paljak: ... > > do we have a web page documenting the differences > > between opensc-pkcs11.so and oneping-opensc-pkcs11.so, > > and can we link to that? I guess most normal users > > will be fine with opensc-pkcs11.so? > > No. It should be docum

Re: [opensc-devel] Let ePass3000 work with OpenCT

2010-02-24 Thread Viktor TARASOV
Andreas Jellinghaus wrote: > Am Mittwoch 24 Februar 2010 09:35:48 schrieb Viktor TARASOV: > >> Xiaoshuo Wu wrote: >> >>> On Wed, 24 Feb 2010 15:34:40 +0800, Andreas Jellinghaus >>> >>> wrote: >>> but I'm still not sure: does this fix a general bug in T0 implementation that

Re: [opensc-devel] [opensc-commits] svn opensc changed[4066] Remove openssh/ directory and our patch for openssh,

2010-02-24 Thread Martin Paljak
On Feb 24, 2010, at 11:07 , Andreas Jellinghaus wrote: > Am Mittwoch 24 Februar 2010 09:38:42 schrieb Martin Paljak: >> I was also just documenting the three different methods for accessing smart >> cards with OpenSSH in the wiki: >> >> http://www.opensc-project.org/opensc/wiki/OpenSSH > > nice.

Re: [opensc-devel] Let ePass3000 work with OpenCT

2010-02-24 Thread Andreas Jellinghaus
Am Mittwoch 24 Februar 2010 09:35:48 schrieb Viktor TARASOV: > Xiaoshuo Wu wrote: > > On Wed, 24 Feb 2010 15:34:40 +0800, Andreas Jellinghaus > > > > wrote: > >> but I'm still not sure: does this fix a general bug in T0 implementation > >> that affects all readers? Or is this a special case for en

Re: [opensc-devel] [opensc-commits] svn opensc changed[4066] Remove openssh/ directory and our patch for openssh,

2010-02-24 Thread Andreas Jellinghaus
Am Mittwoch 24 Februar 2010 09:38:42 schrieb Martin Paljak: > I was also just documenting the three different methods for accessing smart > cards with OpenSSH in the wiki: > > http://www.opensc-project.org/opensc/wiki/OpenSSH nice. but why document the old way? we could simply point to the old d

Re: [opensc-devel] [opensc-commits] svn opensc changed[4066] Remove openssh/ directory and our patch for openssh,

2010-02-24 Thread Martin Paljak
On Feb 24, 2010, at 10:25 , [email protected] wrote: > Revision: 4066 > Author: aj > Date: 2010-02-24 08:25:13 + (Wed, 24 Feb 2010) > > Log Message: > --- > Remove openssh/ directory and our patch for openssh, > as they removed the opensc code in favor or new pkcs#11 c

Re: [opensc-devel] Let ePass3000 work with OpenCT

2010-02-24 Thread Viktor TARASOV
Xiaoshuo Wu wrote: > On Wed, 24 Feb 2010 15:34:40 +0800, Andreas Jellinghaus > wrote: > > >> but I'm still not sure: does this fix a general bug in T0 implementation >> that affects all readers? Or is this a special case for entersafe only? >> > Sorry for this late reply: > I think that

Re: [opensc-devel] Let ePass3000 work with OpenCT

2010-02-24 Thread Xiaoshuo Wu
On Wed, 24 Feb 2010 15:34:40 +0800, Andreas Jellinghaus wrote: > but I'm still not sure: does this fix a general bug in T0 implementation > that affects all readers? Or is this a special case for entersafe only? Sorry for this late reply: I think that card returns data instead of 61XX is not sp