Closed pandalec closed 3 years ago
Hi @parsifallo,
we wish you a happy new year, too :)
The Heilberufsausweis (RU) is only used authenticate you to use the Konnektor. The Konnektor has it's own key pair, that is used to sign the QES container. The certificate of this key pair is included in the QES container. The FD uses the BNetzA-VL to verify this certificate.
Which Konnektor do you use? If you run your own Konnektor, then please check if your certificates are added to the BNetzA-VL used by the FD. If you use an Konnektor provided by gematik, then the Pseudo BNetzA-VL contained in the repository should work.
Can you attach the QES container from the Konnektor to this issue? Then we can try to reproduce your error to find a solution.
Best regards, gematik Dev-Team.
Hey! I use a secunet Konnektor with 4.0.9 NK Firmware and Gematik RU test cards. I attached the signed bundle which comes from the Konnektor via SOAP. If you meant something different or need more input, just let me know.
Thank you!
BR, parsi
Quick update: We can reproduce the error with your data. We are working on a solution right now.
Best regards, gematik Dev-Team.
Nice, thanks :)
Hi @parsifallo,
we've just pushed a new release (v0.10.0). That should fix the problem with the QES verification.
Best regards, gematik Dev-Team
Happy new year!
First of all, thanks again for the clarification inside the other tickets!
As you implemented the functionality to read the Pseudo-BNetzA-VL.xml I tried $activate with a document signed by a Heilberufsausweis (RU). I checked, the certificate is inside the Pseudo-BNetzA-VL.xml and I get a signed document from a Konnektor (with a warning):
Task/GUID/$activate is giving me the following error:
Any idea what could cause the OpenSSL error? Thanks in advance!
BR parsi