Technical checks for the operation of the electronic DNI
Skip information indexTechnical checks of the electronic DNI with Mozilla Firefox and Linux
The use of the electronic DNI is valid for telematic procedures, for which it will be necessary to have certain hardware and software elements that allow access to the card chip and, therefore, the use of the certificates contained therein.
To use the DNIe it is necessary to have a card reader that complies with the ISO-7816 and API PC/SC standards, correctly connected to your computer and recognized by the operating system.
When accessing a procedure on our website that requires an electronic certificate, the browser must request the PIN and then show the certificate store to be able to choose the appropriate one (authentication or signature). If this does not happen, it is because the browser or the DNIe are not correctly configured.
In addition, it is necessary to install the appropriate software depending on the operating system used.
To download the DNIe software, access the portal www.dnielectrónico.es.
In the "Downloads Area" section, click on "GNU/Linux and MacOS Systems", "Software for Linux distributions", "Linux Distributions". Locate the installer corresponding to the distribution and type of DNIe employees.
To find out if the distribution is 32 or 64 bits, open a "Terminal" window and type the command "uname -m". If the output is "x86_64", the system is 64-bit. If the output is "i386, i486, i586, or i686", the system is 32-bit.
It is advisable to follow the installation instructions in the "MultiCardPKCS11 DNIe V1 Installation Manual" available on the DNIe page.
INSTALLATION IN UBUNTU
Run the installer by double clicking on it and the "Ubuntu Software Center" will open. Click "Install" and follow the instructions in the installation manual. If a previous version is installed, an "Upgrade" message will appear.
Next, install the PKCS#11 Security Module in the Mozilla Firefox browser. Go to the menu "Edit", "Preferences", "Privacy and security", "Security", "Certificates" and click on the "Security devices" button. Press "Load."
Give the module a name (for example " DNIE ") and click "Browse" to locate the file "libpkcs11-dnie.so" in /usr/lib or usr/lib64. Then click "OK."
The DNIe certificates are stored in the "Your certificates" tab: an authentication certificate and a signing certificate. To check it, go to the "Edit", "Preferences", "Privacy and Security", "Security", "Certificates" menu and click on the "View certificates" button.
Confirm that the browser is correctly detecting the DNIe and that the PIN is correct. To do this, enter the DNIe and open Firefox with it connected. Then go again to "Edit", "Preferences", "Privacy and security", "Security", "Certificates", "Security devices".
Select the DNIe module and click on "Login". It is then required to enter the password for DNIe . If everything is correct, the text "Session started" will appear in the "Value" column.
After verifying that the DNIe is correctly installed, it is necessary to verify that it works correctly. To check if the electronic DNI is current and correct, access the FNMT page and the option "Obtain/Renew your Digital Certificate".
If when you click on "Get/Renew your Digital Certificate" the error "Your connection is not secure" appears, it means that the AC ROOT FNMT -RCM certificate is not installed. To access it in that case, click on "Advanced" in the error message, "Add exception..."."Confirm exception".
Enter the page of the FNMT , "Ceres", "Certificates", "Individual". Locate at the bottom of the screen the "Downloads" option, "Root certificates of the FNMT "."Download AC Root FNMT -RCM" and install the certificate.
Next, in the left side menu, select "Check Status", "Request Verification".
If DNIe is recognized correctly, it displays the authentication certificate. Press "OK."
After identification, the status of the certificate is displayed. The certificate is correct when its status is "Valid and not revoked." It is not possible to use the DNIe if it has expired, revoked or is inactive for any other reason.
If, even after entering the PIN correctly, the screen does not advance or the message "Page cannot be displayed" appears, it is likely that the PIN is blocked.
As long as the validation (authentication and signing) is not carried out satisfactorily, the DNIe will not work on our website.