Writing cardholder certificates (DO 7F21) fails with "Security status not satisfied" #51
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Writing a cardholder certificate (DO 7F21) is normally done with gpg-card's
writecertcommand. However, this command fails with "Wrong PIN", even though I entered the correct admin PIN. "Cardholder certificates support" is listed in the README.To debug this further, I tried writing to DO 7F21 manually. While the admin PIN is correctly verified, writing still fails with "Security status not satisfied":
Compare this to, e.g., a YubiKey:
Thank you. Now the "Security status not satisfied" error is gone. However, writing certificates still seems to fail. Reading them back either returns no data or a "not found" ("Nicht gefunden") error.