Re: [Fed-Talk] Oberthur ID One 128 v5.5 cards
Re: [Fed-Talk] Oberthur ID One 128 v5.5 cards
- Subject: Re: [Fed-Talk] Oberthur ID One 128 v5.5 cards
- From: "Miller, Timothy J." <email@hidden>
- Date: Fri, 13 May 2011 10:31:56 -0400
- Acceptlanguage: en-US
- Thread-topic: [Fed-Talk] Oberthur ID One 128 v5.5 cards
On May 13, 2011, at 8:04 AM, Bob Colbert wrote:
> Im not a programmer by any means, but if I were, it would seem that
> adjusting the source code for the card reading profile with the built-in
> Mac tokends to actually parse the certificates would be something that
> takes an hour or so.
ECA smartcards are actually a different data model than the CAC and PIV, though IIRC the vendors are migrating to PIV-Compatibility. So supporting these cards needs a completely different tokend, not a tweak to existing code.
The reason the card shows up is because the underlying cardstock is recognized by (at least one) tokend, but since the data model is different it won't actually work. This is a legacy of the days when every card had a unique data model, which meant that "overlaps" never occurred and the ATR code could be used to select appropriate drivers. Today, card abstraction layers (SP800-73, GSC-IS 2.1, JCOP, etc.) mooted this method (one ATR could map to an infinite number of data models), but this doesn't mean that the various software stacks grok it properly.
-- T
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Fed-talk mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden