Release notes Personal Desktop Client 5.12
Release date: 2024-03-08
PER-3799: Initial support for ECC keys and certificates
ECC keys, certificates, and crypto operations are now supported in Personal Desktop Client over PKCS#11 interface and in Windows minidriver.
The macOS CryptoTokenKit extension has not been updated yet, ECC support on macOS is limited to PKCS#11. Enhanced support is planned for future releases.
ECC support has been added only to CardOS 5.0+ cards. Generating and importing ECC keys is currently only supported for up to 256-bit curves. The following curves are are supported:
secp192k1 (1.3.132.0.31)
secp192r1 aka prime192v1 (1.2.840.10045.3.1.1)
secp224r1 (1.3.132.0.33)
secp256k1 (1.3.132.0.10)
secp256r1 aka prime256v1 (1.2.840.10045.3.1.7)
brainpoolP160r1 (1.3.36.3.3.2.8.1.1.1)
brainpoolP192r1 (1.3.36.3.3.2.8.1.1.3)
brainpoolP224r1 (1.3.36.3.3.2.8.1.1.5)
brainpoolP256r1 (1.3.36.3.3.2.8.1.1.7)
PER-4704: Support for D-Trust 5.1 and 5.4 profiles with ECC
The D-Trust 5.1 and 5.4 profiles that use ECC keys and certificates are now supported by Personal Desktop Client. Similar to RSA profiles, users must use the D-Trust Card Assistant for PIN activation, modification, and the unblock functionality.
PER-4701: Add BUILTIN_ICCSN variable to .cpf
It is possible to use the BUILTIN_ICCSN variable in .cpf files to read ICCSN (chip serial number) from the card.
PER-4724: Increase CTK.CloseP11SessionsDelay to 900 seconds
The default value for CTK.CloseP11SessionsDelay is now set to 900 seconds. This is used for PIN caching in the CryptoTokenKit extension.
Contact and support
For information regarding support, training, and other services in your area, visit www.nexusgroup.com/. Nexus offers maintenance and support services to customers and partners.
For more information, go to Nexus Technical Support or contact your local sales representative.