Kleopatra should allow the generation of S/MIME CSRs for NetKey card keys.
Description
Description
Details
Details
- Version
- master
Revisions and Commits
Revisions and Commits
rKLEOPATRA Kleopatra | |||
rKLEOPATRA7c2b81e9679a Do not offer CSR creation for qualified signature keys | |||
rKLEOPATRA5e480a78c3e0 Allow creation of CSRs for card keys of NetKey cards |
Status | Assigned | Task | ||
---|---|---|---|---|
Testing | • aheinecke | T5123 Kleopatra: Generate OpenPGP pubkey S/MIME CSR from existing card | ||
Resolved | • aheinecke | T5129 Kleopatra: Generate S/MIME CSR for NetKey card key | ||
Resolved | • ikloecker | T5184 scd: Generating CSR for NetKey card key fails | ||
Open | None | T5219 scd: Generating CSR for SigG NetKey card key fails |
Event Timeline
Comment Actions
Generating a CSR for the standard NetKey card signing key works now, but generating a CSR for the SigG NetKey card key fails (T5219).
Comment Actions
As discussed, generating a CSR for a SigG key (used for qualified signatures) makes no sense because no CA would sign such a certificate.