[x]
Posted via EE Mobile

Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again.

Question
[x]
Attachment Details

Smart Cards on Linux

Asked by dan_glos in SmartCards & Readers, Ubuntu, Linux

Tags: Smart Card, Linux, Ubuntu, Gemalto .net V2, gemalto

Hi,

I am trying to use a smart cards on Ubuntu.. I am not looking to use them to login, just to store certificates and sign certificates. The problem I have is that I can not read any certificates from the smart card or write to it.

I have tried to get it running on Ubuntu 7, 8 and now running 9.04 beta.

The smart card is a Gemalto .net V2 smart card and the card reader is a Gemplus TWIN USB card reader.

I have the following packages installed

root@certificate01:~# dpkg -l | grep pcsc
ii  libpcsc-perl                               1.4.7-1                                 Perl interface to the PC/SC smart card libra
ii  libpcsclite1                               1.4.102-1ubuntu2                        Middleware to access a smart card using PC/S
ii  pcsc-tools                                 1.4.14-1                                Some tools to use with smart cards and PC/SC
ii  pcscd                                      1.4.102-1ubuntu2                        Middleware to access a smart card using PC/S
root@certificate01:~# dpkg -l | grep opensc
ii  libopensc2                                 0.11.4-5ubuntu1                         SmartCard library with support for PKCS#15 c
ii  mozilla-opensc                             0.11.4-5ubuntu1                         Mozilla plugin for authentication using Open
root@certificate01:~# dpkg -l | grep openct
ii  libopenct1                                 0.6.14-3ubuntu2                         middleware framework for smart card terminal
ii  openct                                     0.6.14-3ubuntu2                         middleware framework for smart card terminal
root@certificate01:~# dpkg -l | grep dot
ii  libgemaltodotnetp11                        2.1.1-1ubuntu2                          .NET PKCS#11 library


I have followed the gemalto instructions here:

http://www.gemalto.com/products/dotnet_card/resources/libraries.html?toggler=0

and also installed the deb package from the above link.

I have had little success reading information from the smart card but normally at most all I can obtain using opensc openct is that it can see the card and list the card attributes, but nothing further.

When I load the /usr/lib/pkcs11/libgtop11dotnet.so as a security device in Firefox it loads but it does not see any smart card/certificates.

Can anyone me some better instructions then what gemalto provide or other packages to use that will allow me to use the smart card?
1:
2:
3:
4:
5:
6:
7:
8:
9:
10:
11:
12:
13:
14:
15:
16:
17:
18:
19:
20:
21:
22:
23:
24:
Running pcsc_scan it sees the following:
 
# pcsc_scan 
PC/SC device scanner
V 1.4.14 (c) 2001-2008, Ludovic Rousseau <ludovic.rousseau@free.fr>
Compiled with PC/SC lite version: 1.4.99
Scanning present readers
0: Gemplus GemPC Twin 00 00
 
Fri Aug 21 14:53:25 2009
 Reader 0: Gemplus GemPC Twin 00 00
  Card state: Card inserted, Shared Mode, 
  ATR: 3B 16 96 41 73 74 72 69 64
 
ATR: 3B 16 96 41 73 74 72 69 64
+ TS = 3B --> Direct Convention
+ T0 = 16, Y(1): 0001, K: 6 (historical bytes)
  TA(1) = 96 --> Fi=512, Di=32, 16 cycles/ETU (223200 bits/s at 3.57 MHz)
+ Historical bytes: 41 73 74 72 69 64
  Category indicator byte: 41 (proprietary format)
 
Possibly identified card (using /usr/share/pcsc/smartcard_list.txt):
3B 16 96 41 73 74 72 69 64
	Gemalto .NET v2.0
[+][-]08/21/09 07:16 AM, ID: 25152010Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]08/21/09 07:28 AM, ID: 25152133Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]08/21/09 07:30 AM, ID: 25152166Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]08/21/09 07:46 AM, ID: 25152343Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]11/02/09 11:51 AM, ID: 25723014Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20091111-EE-VQP-89 - Hierarchy / EE_QW_3_20080625