多重身份¶
The multiple identities feature allows to use 3 virtual smart cards in place of one, giving bigger flexibility in the every day use, as well as separation between user identities (business, personal etc.) or even allowing usage of it for more than one user (PINs are separate).
All of the smart cards have separate data objects, meaning they all could have different keys, certificates stored, and PINs set. Identities do not interact between each other.
The virtual smart cards are identifiable by the first digit of the serial number, which is replaced by identity number for second (“1”) and third one (“2”). Serial number is not changed for the first identity.
使用方法¶
要改变身份,只需发送一个自定义的CCID命令。这可以通过``pynitrokey``工具实现。
连接你的Nitrokey Start并验证它是否被识别。
$ nitropy start list *** Nitrokey tool for Nitrokey FIDO2 & Nitrokey Start :: 'Nitrokey Start' keys: FSIJ-1.2.15-87042524: Nitrokey Nitrokey Start (RTM.10)
改变身份,将``<ID>``替换为``0``。
1,或2。$ nitropy start set-identity <ID> *** Nitrokey tool for Nitrokey FIDO2 & Nitrokey Start Trying to set identity to <ID> device has reset, and should now have the new identity
限制条件¶
从RTM.10版本开始,只有一个限制--第三个身份可以存储不超过1024字节的证书。其他两个身份的标准限制是每个证书2048字节。