[Evolution] Hardware security devices (solved)

Roberto Salomon salomon@techisa.srv.br
Tue, 08 Jun 2004 09:04:14 -0300


--=-pAuruzGetYqbIv1Q83+m
Content-Type: multipart/alternative; boundary="=-Svt4qwXU/duOhGGQnjOe"


--=-Svt4qwXU/duOhGGQnjOe
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

Solved it!

On another thread regarding certificates, I found that since Evolution
uses Mozilla's libnss, Mozilla's certificate database can be imported
into Evolution by copying the files cert8.db, key3.db and secmod.db from
~/.mozilla/<user>/<random>/ to ~/.evolution. I did this at first to
import the root certificates into Evolution in order to validate
digitally signed messages. I was very surprised, however, when Evolution
prompted me for the PIN on the hardware device!

Although this is an interesting and functional workaround, I would like
to see a user interface to access hardware devices within Evolution and
not have to go through all the hassle of recopying files from Mozilla to
Evolution. Any plans on this?

On Mon, 2004-06-07 at 14:31 -0300, Roberto Salomon wrote:

> With Evolution now supporting S/Mime, has anyone tried to use a
> hardware device such as Aladdin's eToken as a security device for
> signing messages in Evolution?

--=20
Roberto F. Salomon
Diretor de Tecnologia
Techisa do Brasil Ltda. htt://www.techisa.srv.br
+55 61 340-6266

--=-Svt4qwXU/duOhGGQnjOe
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 TRANSITIONAL//EN">
<HTML>
<HEAD>
  <META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; CHARSET=3DUTF-8">
  <META NAME=3D"GENERATOR" CONTENT=3D"GtkHTML/3.1.16">
</HEAD>
<BODY>
Solved it!<BR>
<BR>
On another thread regarding certificates, I found that since Evolution uses=
 Mozilla's libnss, Mozilla's certificate database can be imported into Evol=
ution by copying the files cert8.db, key3.db and secmod.db from ~/.mozilla/=
&lt;user&gt;/&lt;random&gt;/ to ~/.evolution. I did this at first to import=
 the root certificates into Evolution in order to validate digitally signed=
 messages. I was very surprised, however, when Evolution prompted me for th=
e PIN on the hardware device!<BR>
<BR>
Although this is an interesting and functional workaround, I would like to =
see a user interface to access hardware devices within Evolution and not ha=
ve to go through all the hassle of recopying files from Mozilla to Evolutio=
n. Any plans on this?<BR>
<BR>
On Mon, 2004-06-07 at 14:31 -0300, Roberto Salomon wrote:<BR>
<BLOCKQUOTE TYPE=3DCITE>
    <FONT COLOR=3D"#000000">With Evolution now supporting S/Mime, has anyon=
e tried to use a hardware device such as Aladdin's eToken as a security dev=
ice for signing messages in Evolution?</FONT><BR>
</BLOCKQUOTE>
<TABLE CELLSPACING=3D"0" CELLPADDING=3D"0" WIDTH=3D"100%">
<TR>
<TD>
<PRE>
--=20
Roberto F. Salomon
Diretor de Tecnologia
Techisa do Brasil Ltda. htt://www.techisa.srv.br
+55 61 340-6266
</PRE>
</TD>
</TR>
</TABLE>
</BODY>
</HTML>

--=-Svt4qwXU/duOhGGQnjOe--

--=-pAuruzGetYqbIv1Q83+m
Content-Type: application/x-pkcs7-signature; name=smime.p7s
Content-Disposition: attachment; filename=smime.p7s
Content-Transfer-Encoding: base64
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--=-pAuruzGetYqbIv1Q83+m--