Jack Magne wrote:
ESC publishes the cert after an enrollment is done.
For CAPI this isn't adequate. Outlook and IE only know about certs present in CAPI. If I enroll on one workstation and move to another, Outlook and IE will fail.
Credential roaming would be a workaround, but you can't presume this is in use. Heck, lots of places don't even use roaming profiles, much less this separate feature.
Previously we had code that did this on token insertion. We could put this feature back in. This would work of course if ESC is on all the workstations you describe.
I think this needs to go back in ASAP. It's an expected function of a smartcard CSP in Windows.
Also, I think when you build the CAPI driver, there is a tool built that does this as well.
What tool, and is it only part of the build or is it installed with ESC? -- Tim
Attachment:
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ Coolkey-devel mailing list Coolkey-devel@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/coolkey-devel