Displaying 20 results from an estimated 25 matches for "libpkcs11".
2009 Nov 19
11
dtracing a forked process OR dynamic library
Hi,
I am tracking down a problem and would like to know how I can follow a
forked process with my dtrace script, or how I can trace a dynamic library.
Here is the problem. I am tracing dtlogin, and specifically I am trying
to determine what error libpkcs11`<routine> is returning. It turns out
dtlogin forks a lot of processes, and I believe the second forked
process is the one that winds up having a failing call to
libpkcs11`<routine>. Of course, when I start dtrace, the forked process
is not yet created, so I can not specify that. Also...
2010 Sep 25
1
ssh-keygen with libpkcs11.so can't work
...new feature "ssh-keygen(1) now supports signing certificate
using a CA key that has been stored in a PKCS#11 token".
According to the manpage, I should use "-D" option. And I had a problem
with this option.
root at ubuntu-desktop[/home/adam/temp7]#ssh-keygen -s ca_key.pub -D
libpkcs11.so -I key_id id_rsa.pub
dlopen libpkcs11.so failed: libpkcs11.so: cannot open shared object file: No
such file or directory
cannot read public key from pkcs11
I searched on my ubuntu server but found no libpkcs11.so. Also, I searched
online, and didn't find too much help.
Do I need to downlo...
2007 Nov 08
0
Fix mismerge for libcryptoutil & libpkcs11
Author: Darren Moffat <darrenm at opensolaris.org>
Repository: /hg/zfs-crypto/zfs-crypto-gate
Latest revision: ec659b717bdb149af4dc7a2ac1bc1c152d859b02
Total changesets: 1
Log message:
Fix mismerge for libcryptoutil & libpkcs11
Files:
update: usr/src/lib/libcryptoutil/common/cryptoutil.h
update: usr/src/lib/libcryptoutil/common/mapfile-vers
update: usr/src/lib/libcryptoutil/common/passutils.c
update: usr/src/lib/pkcs11/libpkcs11/common/mapfile-vers
update: usr/src/lib/pkcs11/libpkcs11/common/pkcs11SUNWExtensions.c
2006 Oct 31
0
6368332 libpkcs11 should report that it is v2.20 not v2.11
Author: darrenm
Repository: /hg/zfs-crypto/gate
Revision: 14d7bfad76ad917e7df568c6739d34eba6b60a33
Log message:
6368332 libpkcs11 should report that it is v2.20 not v2.11
Files:
update: usr/src/lib/pkcs11/libpkcs11/common/pkcs11Conf.c
update: usr/src/lib/pkcs11/libpkcs11/common/pkcs11Global.h
2010 Sep 25
0
ssh-keygen with libpkcs11.so can't work (Nan)
> ? 4. ssh-keygen with libpkcs11.so can't work (Nan)
> I searched on my ubuntu server but found no libpkcs11.so. ?Also, I searched
> online, and didn't find too much help.
> Do I need to download the source of pkcs11, then compile and install on my
> mahine? ?If yes, where could I get the source.
> Or I mis...
2007 Sep 11
1
passphrase & keymgr load/unload
...rc/lib/libcryptoutil/common/mapfile-vers
update: usr/src/lib/libzfs/Makefile.com
update: usr/src/lib/libzfs/common/libzfs.h
update: usr/src/lib/libzfs/common/libzfs_crypto.c
update: usr/src/lib/libzfs/common/mapfile-vers
update: usr/src/lib/pkcs11/include/cryptoki.h
update: usr/src/lib/pkcs11/libpkcs11/common/mapfile-vers
update: usr/src/lib/pkcs11/libpkcs11/common/pkcs11SUNWExtensions.c
2006 Oct 31
0
PSARC 2006/214 Crypto Framework random number API/SPI update
...: mcpowers
Repository: /hg/zfs-crypto/gate
Revision: 96cccf53906cb9bb5a733b8ca426f5f511392252
Log message:
PSARC 2006/214 Crypto Framework random number API/SPI update
6374503 C_SeedRandom is too slow causing poor performance with Apache/OpenSSL when using pkcs11
Files:
update: usr/src/lib/pkcs11/libpkcs11/common/metaGeneral.c
update: usr/src/lib/pkcs11/libpkcs11/common/metaGlobal.h
update: usr/src/lib/pkcs11/libpkcs11/common/metaRand.c
update: usr/src/lib/pkcs11/pkcs11_softtoken/common/softGeneral.c
update: usr/src/lib/pkcs11/pkcs11_softtoken/common/softRand.c
update: usr/src/lib/pkcs11/pkcs11_...
2006 Oct 31
0
PSARC 2005/572 PKCS#11 v2.20
...n/crypto/rsa/rsa_impl.h
update: usr/src/common/crypto/sha2/sha2.c
update: usr/src/lib/libcryptoutil/common/mechkeytype.c
update: usr/src/lib/libcryptoutil/common/mechstr.c
update: usr/src/lib/pkcs11/Makefile.softtoken.com
update: usr/src/lib/pkcs11/include/pkcs11t.h
update: usr/src/lib/pkcs11/libpkcs11/common/metaAttrManager.c
update: usr/src/lib/pkcs11/libpkcs11/common/metaGeneral.c
update: usr/src/lib/pkcs11/libpkcs11/common/pkcs11General.c
update: usr/src/lib/pkcs11/pkcs11_kernel/Makefile.com
update: usr/src/lib/pkcs11/pkcs11_kernel/common/kernelAttributeUtil.c
update: usr/src/lib/pkcs11/...
2010 Jul 21
3
smbd -D hangs
I'm testing both sunfreeware and official sun (sfw) samba on Solaris
10. For some reason since yesterday, the smbd process just "hangs" at
the start.
No log is generated on server side
Where smbd is started, I can't find any open port on 139 or 145
My OS is Solaris 10
# uname -a
SunOS labo2 5.10 Generic_142900-13 sun4v sparc SUNW,SPARC-Enterprise-T5120
#
2015 Jan 07
2
Use Samba with ACL for read Active Directory and set Permissions via it.
...CRC
> pkinit_kdc_hostname = <DNS>
> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
> pkinit_eku_checking = kpServerAuth
> pkinit_win2k_require_binding = false
> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>
My krb5.conf is:
[libdefaults]
default_realm = EXAMPLE.LAN
dns_lookup_realm = false
dns_lookup_kdc = true
ticket_lifetime = 24h
forwardable = yes
>
> and removed "krb5.keytab" too. You told me that my domain name is "jasondomaini" b...
2015 Jan 09
4
Use Samba with ACL for read Active Directory and set Permissions via it.
...hostname = <DNS>
>> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
>> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
>> pkinit_eku_checking = kpServerAuth
>> pkinit_win2k_require_binding = false
>> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>>
> My krb5.conf is:
>
> [libdefaults]
> default_realm = EXAMPLE.LAN
> dns_lookup_realm = false
> dns_lookup_kdc = true
> ticket_lifetime = 24h
> forwardable = yes
>
>> and removed "krb5.keytab" too. You told me...
2015 Jan 06
2
Use Samba with ACL for read Active Directory and set Permissions via it.
...t;
>>> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
>>> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
>>> pkinit_eku_checking = kpServerAuth
>>> pkinit_win2k_require_binding = false
>>> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>>>
>>> [realms]
>>> EXAMPLE.COM = {
>>> kdc = kerberos.example.com
>>> admin_server = kerberos.example.com
>>> }
>>> JASONDOMAIN.JJ = {
>>> auth_to_local = RULE:[1:$0\$1](^JASONDOMAIN\.JJ\\.*)s/^JASONDOMAIN\.JJ/JASONDOMAINI...
2015 Jan 07
0
Use Samba with ACL for read Active Directory and set Permissions via it.
...RC4-HMAC DES-CBC-MD5 DES-CBC-CRC
pkinit_kdc_hostname = <DNS>
pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
pkinit_eku_checking = kpServerAuth
pkinit_win2k_require_binding = false
pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
and removed "krb5.keytab" too. You told me that my domain name is "jasondomaini" but it is wrong, My domain name is "jasondomain.jj" and backend is "jasondomaini", For example, when I want to login into Windows use "jasondomaini\jason".
After...
2015 Jan 09
0
Use Samba with ACL for read Active Directory and set Permissions via it.
...CRC
> pkinit_kdc_hostname = <DNS>
> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
> pkinit_eku_checking = kpServerAuth
> pkinit_win2k_require_binding = false
> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>
My krb5.conf is:
[libdefaults]
default_realm = EXAMPLE.LAN
dns_lookup_realm = false
dns_lookup_kdc = true
ticket_lifetime = 24h
forwardable = yes
>
> and removed "krb5.keytab" too. You told me that my domain name is "jasondomaini" b...
2015 Jan 19
0
Did you get my previous email? Not Spam.
...kinit_kdc_hostname = <DNS>
> # pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
> # pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
> # pkinit_eku_checking = kpServerAuth
> # pkinit_win2k_require_binding = false
> # pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>
>
> ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
>
> Thank you so much and Please let me know your idea.
>
>
>
>
>
>
> On Wednesday, January 14, 2015 8:10 AM, Rowland Penny <rowlandpenny at googlemail.com> wrote:
> On 14/01/15 12...
2015 Jan 12
0
Use Samba with ACL for read Active Directory and set Permissions via it.
...hostname = <DNS>
>> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
>> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
>> pkinit_eku_checking = kpServerAuth
>> pkinit_win2k_require_binding = false
>> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>>
> My krb5.conf is:
>
> [libdefaults]
> default_realm = EXAMPLE.LAN
> dns_lookup_realm = false
> dns_lookup_kdc = true
> ticket_lifetime = 24h
> forwardable = yes
>
>> and removed "krb5.keytab" too. You told me...
2015 Jan 10
0
Use Samba with ACL for read Active Directory and set Permissions via it.
...hostname = <DNS>
>> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
>> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
>> pkinit_eku_checking = kpServerAuth
>> pkinit_win2k_require_binding = false
>> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>>
> My krb5.conf is:
>
> [libdefaults]
> default_realm = EXAMPLE.LAN
> dns_lookup_realm = false
> dns_lookup_kdc = true
> ticket_lifetime = 24h
> forwardable = yes
>
>> and removed "krb5.keytab" too. You told me...
2015 Jan 05
2
Use Samba with ACL for read Active Directory and set Permissions via it.
...CRC
> pkinit_kdc_hostname = <DNS>
> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
> pkinit_eku_checking = kpServerAuth
> pkinit_win2k_require_binding = false
> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>
> [realms]
> EXAMPLE.COM = {
> kdc = kerberos.example.com
> admin_server = kerberos.example.com
> }
> JASONDOMAIN.JJ = {
> auth_to_local = RULE:[1:$0\$1](^JASONDOMAIN\.JJ\\.*)s/^JASONDOMAIN\.JJ/JASONDOMAINI/
> auth_to_local = RULE:[1:$0\$1](^ADVER\.JASONDOMAIN\.JJ\\....
2007 May 15
1
Asterisk 1.4.4 reproducibly dumps core on Solaris 10
...lpers.so.5...done.
Loaded symbols for /usr/sfw/lib/libnetsnmphelpers.so.5
Reading symbols from /usr/sfw/lib/libnetsnmp.so.5...done.
Loaded symbols for /usr/sfw/lib/libnetsnmp.so.5
Reading symbols from /usr/lib/libkvm.so.1...done.
Loaded symbols for /usr/lib/libkvm.so.1
Reading symbols from /usr/lib/libpkcs11.so.1...done.
Loaded symbols for /usr/lib/libpkcs11.so.1
Reading symbols from /usr/lib/libkstat.so.1...done.
Loaded symbols for /usr/lib/libkstat.so.1
Reading symbols from /usr/lib/libelf.so.1...done.
Loaded symbols for /usr/lib/libelf.so.1
Reading symbols from /usr/lib/libadm.so.1...done.
Loaded sy...
2015 Jan 05
2
Use Samba with ACL for read Active Directory and set Permissions via it.
...hostname = <DNS>
>> pkinit_anchors = DIR:/var/lib/pbis/trusted_certs
>> pkinit_cert_match = &&<EKU>msScLogin<PRINCIPAL>
>> pkinit_eku_checking = kpServerAuth
>> pkinit_win2k_require_binding = false
>> pkinit_identities = PKCS11:/opt/pbis/lib64/libpkcs11.so
>>
>> [realms]
>> EXAMPLE.COM = {
>> kdc = kerberos.example.com
>> admin_server = kerberos.example.com
>> }
>> JASONDOMAIN.JJ = {
>> auth_to_local = RULE:[1:$0\$1](^JASONDOMAIN\.JJ\\.*)s/^JASONDOMAIN\.JJ/JASONDOMAINI/
>> auth_to_local = RULE:...