

Use the -i argument to specify the certificate request file. This requires the -i argument.Ĭreate a new binary certificate file from a binary certificate request file.
PTERM FILE VS PEM FILE SERIES
Run a series of commands from the specified batch file. The certificate database should already exist if one is not present, this command option will initialize one by default. Command OptionsĪdd an existing certificate to a certificate database. The command option -H will listĪll the command options and their relevant arguments. Running certutil always requires one and only one command option to specify the type of certificate operation.Įach command option may take zero or more arguments. For information on the security module database management, see the modutil manpage. This document discusses certificate and key database management. Certificate issuance, part of the key and certificate management process, requires that keys and certificates be created in the key database. It can specifically list, generate, modify, or delete certificates, create or change the password, generate new public and private key pairs,ĭisplay the contents of the key database, or delete key pairs within the key database. The Certificate Database Tool, certutil, is a command-line utility that can create and modify certificate and key databases.

Please contribute to the initial review in Mozilla NSS bug 836477 This documentation is still work in progress. db utilities for these three databases.ĬERTUTIL(1) NSS Security Tools CERTUTIL(1)Ĭertutil - Manage keys and certificate in both NSS databases and other NSS tokens It writes the certificate to the cert8.db and yes there is a key.db and secmod.db. In fact I used certutil to build the certificate in the first place. I've reviewed the certutil, and there's NOTHING that indicates it will output certificates in.
