[prev in list] [next in list] [prev in thread] [next in thread] 

List:       ms-capicom
Subject:    Re: Decrypting Data in IE ActiveX Control - pwd prompt
From:       "Michel Gallant (MVP)" <neutron () ISTAR ! CA>
Date:       2003-03-20 15:16:14
[Download RAW message or body]

<!doctype html public "-//w3c//dtd html 4.0 transitional//en">
<html>
Clive Bredenkamp wrote:
<blockquote TYPE=CITE>&nbsp;
<p><font face="Arial"><font color="#000000"><font size=-1>Hi,</font></font></font>
<p><font face="Arial"><font color="#000000"><font size=-1>When encrypting
data I can use the clients cert</font></font></font> <font face="Arial"><font \
color="#000000"><font size=-1>to</font></font></font> <font face="Arial"><font \
color="#000000"><font size=-1>sign multiple files, only</font></font></font> <font \
face="Arial"><font color="#000000"><font size=-1>entering their cert pwd \
once.</font></font></font></blockquote> &nbsp;If you are talking about enveloping to \
recipients, why would you need a pwd? You only
<br>access the recipients' public key for that (by default, looks in the
AddressBook store).
<blockquote TYPE=CITE><font face="Arial"><font color="#000000"><font \
size=-1></font></font></font>&nbsp; <p><font face="Arial"><font color="#000000"><font \
size=-1>However when decrypting, you don't seem to be able to specify the cert to use \
to decrypt with. So you get prompted for a cert pwd (or a "Click OK" if you don't
have a cert pwd) every single time you decrypt.</font></font></font></blockquote>
EnvelopedData.Decrypt will only look in the MY store, for certs with associated
private
<br>keys corresponding to public key used to encrypt the message to that
recipient. You
<br>can't specify the cert (or the cert store). This is a request for new
release of CAPICOM.
<blockquote TYPE=CITE><font face="Arial"><font color="#000000"><font \
size=-1></font></font></font>&nbsp; <p><font face="Arial"><font color="#000000"><font \
size=-1>I have a Control that needs to decrypt multiple files at once. Does anyone \
know how to remember the cert (Private Key) being used to decrypt so that I am not \
prompted for the pwd</font></font></font> <font face="Arial"><font \
color="#000000"><font size=-1>every time?</font></font></font></blockquote>
One approach might be to package all files you want to encrypt (say in
a cab or other archive) and
<br>then envelop the entire group, instead of encrypting individually.
<br>Cheers,
<br>&nbsp;- Mitch
<br>&nbsp;
<blockquote TYPE=CITE><font face="Arial"><font color="#000000"><font \
size=-1></font></font></font>&nbsp; <p><font face="Arial"><font color="#000000"><font \
size=-1>Thanks</font></font></font> <p><font face="Arial"><font color="#000000"><font \
size=-1>Clive.</font></font></font> <br>&nbsp;</blockquote>
</html>


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic