[Pcsclite-muscle] C_GenerateKeyPair failure with ACS CryptoMate (T2), ...shouldwork.html#0x072F0xB106

Ludovic Rousseau ludovic.rousseau
Sat Apr 15 07:34:37 PDT 2017


2017-04-15 10:55 GMT+02:00 Carsten Bl?ggel <carsten.blueggel at freenet.de>:

> Hello,
>
> C_GenerateKeyPair on hardware ACS CryptoMate (T2),
>
> idVendor: 0x072F
> idProduct: 0xB106
>
> always fails with bit size > 3328 (... 4096), it succeeds <= 3328.
> As comparison, C_GenerateKeyPair on predecessor hardware
> https://pcsclite.alioth.debian.org/ccid/shouldwork.html#0x072F0x90DB
> takes about 3-4 minutes for 4096 bit key pair to complete (with same
> ccid-git, invoked through scriptor) and #0x072F0xB106 seems to be slower,
> thus my assumption, it may be something time-related (or a bug in card
> operating system?).
>
> Occasionally #0x072F0xB106 also shows some other strange behavior like
> starting the Linux-User-Logout-countdown (Kubuntu 16.04 xenial) after
> plugging out/removing the USB token.
> And once, after a failed C_GenerateKeyPair, card contents were erased.
>
> My trial to change 'TIME_BEFORE_SUICIDE' from 60 to 300 and manually
> installing 1.4.26 libpcsclite and pcscd ended in screwing my system, then
> back with 1.8.14, omitting --auto-exit from pcscd start params didn't
> change the failure issue.
> I hope, the following information is complete and a solution is close?
> Thanks in advance, Regards
>

>From log1_failed_0x072F0xB106_CryptoMate_T2:
After a lot of time and many "Time extension request" sent by the "card"
the reader reports:
00000023 commands.c:1523:CCID_Receive Card absent or mute

It is a problem within the token itself.
I can't fix the problem.

Bye

-- 
 Dr. Ludovic Rousseau
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/pcsclite-muscle/attachments/20170415/2a8ebeca/attachment.html>



More information about the pcsclite-muscle mailing list