EldoS | Feel safer!

Software components for data protection, secure storage and transfer

Work with Rutoken

Also by EldoS: CallbackProcess
A component to control process creation and termination in Windows and .NET applications.
#25935
Posted: 08/03/2013 12:23:05
by Kuban Moldobaev (Basic support level)
Joined: 08/03/2013
Posts: 11

Hi! PKIBlackBox work with Rutoken? I have Rutoken S and i can't generate .cer certificate on my Rutoken ? What you say about this ?
#25936
Posted: 08/03/2013 12:45:05
by Eugene Mayevski (EldoS Corp.)

We have no experience with Rutoken, sorry. In any case SecureBlackbox generates keypairs in memory (not on or using the device), then you can add the certificate with the corresponding private key to the device.


Sincerely yours
Eugene Mayevski
#25976
Posted: 08/06/2013 03:06:25
by Kuban Moldobaev (Basic support level)
Joined: 08/03/2013
Posts: 11

Ok, Are you have demo application about generation RSA keypairs in memory ? Where I find this demo ? I am Delphi programmer. Thanks you a lot!
#25977
Posted: 08/06/2013 03:08:06
by Eugene Mayevski (EldoS Corp.)

Please see <SecureBlackbox>\Samples\Delphi\PKIBlackbox\CertDemo sample on your disk.


Sincerely yours
Eugene Mayevski
#25978
Posted: 08/06/2013 03:14:54
by Kuban Moldobaev (Basic support level)
Joined: 08/03/2013
Posts: 11

And one question please. We work with .cer certificate (public and private RSA keys) in our project with E-token. Now we decide work with Rutoken and as I understand Rutoken work only with .p12 and . pfx certificates. What you say about this ? What can we do ? Please describe this, thanks
#25979
Posted: 08/06/2013 03:23:04
by Eugene Mayevski (EldoS Corp.)

Unfortunately your understanding of basics is incomplete. What you mention is just file extensions, not certificate formats. Consequently it doesn't matter what format the file is in - the hardware always works with X.509 certificate in binary DER format. And your software (or software that comes with device) can support (or not support) certificate *files* in different formats.


Sincerely yours
Eugene Mayevski
#25981
Posted: 08/06/2013 03:45:08
by Kuban Moldobaev (Basic support level)
Joined: 08/03/2013
Posts: 11

Thanks. I understand. All this extensions - are X509 certificates. PKCS11 library work with X509 formats?
#25983
Posted: 08/06/2013 03:54:01
by Eugene Mayevski (EldoS Corp.)

PKCS#11 is just an interface to hardware, and hardware works only with DER-encoded data (at least we never saw any hardware that behaved differently)


Sincerely yours
Eugene Mayevski
#26096
Posted: 08/13/2013 01:40:40
by Kuban Moldobaev (Basic support level)
Joined: 08/03/2013
Posts: 11

Eugene Mayevski Hi! How are you? When we generate certificate, we got error: EEICertificateError with message 'Issuer fields are empty'. What is this error? What can we do? Help please!
#26097
Posted: 08/13/2013 02:11:46
by Eugene Mayevski (EldoS Corp.)

The message is self-explanatory - you have not filled Issuer fields of the certificate. Please refer to how-to in the help file and to the Knowledgebasefor information about how to generate certificates. Also CertDemo sample in <SecureBlackbox>\Samples\<language>\PKIBlackbox\CertDemo folder includes generation functionality.


Sincerely yours
Eugene Mayevski
Also by EldoS: BizCrypto
Components for BizTalk® and SQL Server® Integration Services that let you securely store and transfer information in your business automation solutions.

Reply

Statistics

Topic viewed 2576 times

Number of guests: 1, registered members: 0, in total hidden: 0




|

Back to top

As of July 15, 2016 EldoS Corporation will operate as a division of /n software inc. For more information, please read the announcement.

Got it!