bionic (5) opencryptoki.conf.5.gz

Provided by: opencryptoki_3.9.0+dfsg-0ubuntu1.4_amd64 bug

NAME

       opencryptoki.conf - Configuration file for pkcsslotd.

DESCRIPTION

       pkcsslotd uses a configuration file at "/etc"/opencryptoki/opencryptoki.conf

       This  is a text file that contains information used to configure pkcs#11 slots. At startup, the pkcsslotd
       daemon parses this file to determine which slots will be made available.

SYNTAX

       This file is made up of slot descriptions. Each slot description is composed of a slot  number,  brackets
       and key-value pairs.

        slot number
        {
            key = value
            ...
        }

       More than one key-value pair may be used within a slot description.

       A key-value pair is composed of, keyword = value.

       The following keywords are valid:

       description
              A Description of the slot. PKCS#11v2.20 defined this as a 64-byte max character-string.

       stdll  This  keyword  is used to define the name of the stdll or token library that will be used for this
              slot. The stdll is an available token library in opencryptoki.

       manufacturer
              This keyword is used to name the ID of the slot manufacturer. PKCS#11v2.20 defines this  as  a  32
              byte long string.

       hwversion
              Version  number  of the slot's hardware, if any. The version number is composed of a major version
              number (the integer portion of the version) and a minor version number (the hundredths portion  of
              the version).  For example, version 1.2, major = 1, minor = 2

       firmwareversion
              Version  number  of the slot's firmware, if any. The version number is composed of a major version
              number (the integer portion of the version) and a minor version number (the hundredths portion  of
              the version).

       confname
              If the slot is associated with a token that has its own configuration file, this option identifies
              the name of that configuration file.  For example, confname=ep11tok.conf

       tokname
              If a token want to have its own token directory name that is  different  from  the  default  name,
              especially if multiple tokens of the same type are configured, this option defines the name of the
              token individual directory.  For example, tokname=ep11tok01

              Note: This key-value pair is optional: If only one token per token type is used,  you  don't  need
              that entry. In that case the default directory name is used.

Notes

       The pound sign ('#') is used to indicate a comment.  Both the comment character and any text after it, up
       to the end of the line, are ignored. The comment character cannot be used inside  the  brackets  of  slot
       descriptions, as this will cause a syntax error.

SEE ALSO

       opencryptoki(7),
       pkcsslotd(8),