13.11.2014 Views

Smartcard quickstarter guide Why use smartcards? - GOOZE ...

Smartcard quickstarter guide Why use smartcards? - GOOZE ...

Smartcard quickstarter guide Why use smartcards? - GOOZE ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Smartcard</strong> <strong>quickstarter</strong> <strong>guide</strong><br />

$ pkcs11-tool --login --test --module /usr/lib/opensc-pkcs11.so<br />

Using slot 1 with a present token (0x1)<br />

Logging in to "Jean-Michel Pouré (User PIN)".<br />

Please enter User PIN:<br />

C_SeedRandom() and C_GenerateRandom():<br />

seeding (C_SeedRandom) not supported<br />

seems to be OK<br />

Digests:<br />

all 4 digest functions seem to work<br />

MD5: OK<br />

SHA-1: OK<br />

RIPEMD160: OK<br />

Signatures (currently only RSA signatures)<br />

testing key 0 (Private Key)<br />

all 4 signature functions seem to work<br />

testing signature mechanisms:<br />

RSA-X-509: OK<br />

RSA-PKCS: OK<br />

SHA1-RSA-PKCS: OK<br />

MD5-RSA-PKCS: OK<br />

RIPEMD160-RSA-PKCS: OK<br />

testing key 1 (2048 bits, label=Private Key) with 1 signature mechanism<br />

MD5-RSA-PKCS: OK<br />

testing key 2 (2048 bits, label=Private Key) with 1 signature mechanism<br />

MD5-RSA-PKCS: OK<br />

Verify (currently only for RSA):<br />

testing key 0 (Private Key)<br />

RSA-X-509: OK<br />

RSA-PKCS: OK<br />

SHA1-RSA-PKCS: OK<br />

MD5-RSA-PKCS: OK<br />

RIPEMD160-RSA-PKCS: OK<br />

testing key 1 (Private Key) with 1 mechanism<br />

RSA-X-509: OK<br />

testing key 2 (Private Key) with 1 mechanism<br />

RSA-X-509: OK<br />

Unwrap: not implemented<br />

Decryption (RSA)<br />

testing key 0 (Private Key) -- can't be <strong>use</strong>d to decrypt, skipping<br />

testing key 1 (Private Key)<br />

RSA-X-509: OK<br />

RSA-PKCS: OK<br />

testing key 2 (Private Key)<br />

RSA-X-509: OK<br />

RSA-PKCS: OK<br />

No errors<br />

Your key/smartcard is usable.<br />

More detailed testing suite for the ePass2003<br />

This sample script can also be <strong>use</strong>d for testing.<br />

WARNING: it will blank and erase ALL DATA on your smartcard/token.<br />

set -o nounset # Treat unset variables as an error<br />

Copyright <strong>GOOZE</strong> 2010-2011 http://www.gooze.eu 46 / 63

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!