createPKCS10,acceptPKCS7 and SignMessage

From: Ramkumar. R (ramkumar_r@atc.tcs.co.in)
Date: 10/31/02


From: "Ramkumar. R" <ramkumar_r@atc.tcs.co.in>
Date: Thu, 31 Oct 2002 04:45:40 -0800


I am generating a PKCS#10 request using xenroll.dll's
createPKCS10 in a Smartcard. Loading the certificate using
acceptFilePKCS7. Then I am able to sign messages using
CryptSignMessage function. But if I move to any other
machine, then I am not able to sign messages. I have moved
the certificate from smartcard to the machine using the
utility provided by card vendor. I am getting the error
as "Key does not exist" while calling CryptSignMessage.
But I am able to do this if I import a PKCS#12 file to
smartcard from one machine and export the certificate from
card to a different machine.

Attatching the source code of the VB executable which does
createPKCS10 and acceptPKCS7






Relevant Pages

  • RE: Relative Security Provided by Cached Domain Credentials?
    ... So when a user logs on the w2k terminal using a smartcard + pin no (rather ... If it does then EFS ... profile currently logged on for the private certificate. ...
    (Focus-Microsoft)
  • Re: SmartCards
    ... Smartcards can contain many authentication id's. ... client certificates can be stored on the smartcard. ... The user must provide the PKI ... certificate. ...
    (Security-Basics)
  • Re: Setting up AD (W2K3) for SmartCard Authentication
    ... The SmartCards can log into on AD Forest, ... Looked that the article on 3rd party CA's, ... Does the certificate contain the user's UPN in the subject alternative name ... Does the DomainController's certificate contain the SmartCard Logon ...
    (microsoft.public.security)
  • Re: Key archival and smartcard CSP
    ... the first question is that does your smartcard ... CSP allow the public/private key pair to be imported into its own store? ... > - When the certificate has been issued, i get the container name and the ...
    (microsoft.public.platformsdk.security)
  • Re: Removing smartcard certificates from the Microsoft Certificate Store (possible MCS API defect)
    ... You friend comes over, plugs in his smartcard, his certificate is automatically transferred over to the Microsoft Certificate Store, he takes out his smartcard and the system is set to go. ... When a client arrives to the office the client's smartcard is inserted into the lawyer's PC and the client's certificate is transferred over to the Microsoft Certificate Store. ... The lawyer and client do their thing, client takes out his smartcard and leaves. ...
    (microsoft.public.platformsdk.security)