Skip to content

Commit 52238a8

Browse files
committed
Writing certificate back to HSM
1 parent f5df097 commit 52238a8

File tree

1 file changed

+12
-2
lines changed

1 file changed

+12
-2
lines changed

ca/opt/ca/sbin/initca

Lines changed: 12 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,10 +13,10 @@ pkcs11-tool \
1313
--module "${PKCS11MODULE}" \
1414
--token "${TOKENLABEL}" \
1515
-l \
16-
--pin "${CHALLENGEPW}" \
16+
# --pin "${CHALLENGEPW}" \
1717
-k \
1818
--key-type "rsa:${CAKEYSIZE}" \
19-
-a "${CAKEYNAME}" \
19+
-a "${CAKEYNAME}"
2020

2121
openssl req \
2222
-new \
@@ -49,10 +49,20 @@ if [ ! -d "${CASIGNEDCERTS}" ]; then
4949
mkdir "${CASIGNEDCERTS}"
5050
fi
5151

52+
echo "Writing certificate back to HSM"
53+
pkcs11-tool \
54+
--module "${PKCS11MODULE}" \
55+
--token "${TOKENLABEL}" \
56+
-l \
57+
-w "${CACERTDER}" \
58+
-y cert \
59+
-a "${CAKEYNAME}"
60+
5261
touch "${CALOCK}"
5362
echo
5463
echo "Sha2Wordlist for ${CACERTPEM}"
5564
sha2wordlist ${CACERTPEM}
5665
echo
5766
echo "Sha2Wordlist for ${CACERTDER}"
5867
sha2wordlist ${CACERTDER}
68+

0 commit comments

Comments
 (0)