ssltrustmgr(1M)ssltrustmgr(1M)NAMEssltrustmgr - add, remove or list X509 certificates in a PEM format
trust_file
SYNOPSIS
Remarks
This command can only be executed by a privileged user.
DESCRIPTION
The command provides a command line interface to add, remove, and list
X509 certificates in a trust_file. The trust_file must already exist
and be in a PEM file format.
In the first form above, the command adds the specified X509 certifi‐
cates from to the existing target trust_file.
In the second form, the command removes the specified X509 certificate
from the target trust_file.
In the third form, the command lists all the X509 certificates in the
target trust_file.
Specifying no options with the command displays the command usage.
Options
The command recognizes the following options:
Adds the specified certificate to the existing target
trust_file. If the trust_file does not exist, an
error message is returned and no action is taken.
If the specified cert_file does not contain X509
certificates, an error message is returned and no
action is taken. The command does not validate
the certifictes in cert_file and it does not
check for duplicate certificates in trust_file.
Removes the specified certificate from the existing target
trust_file. The certificates in the trust_file
are counted from the beginning of the file with a
counter starting from 1. If the user specifies a
non existing certificate number, an error message
is returned and no action is taken.
Displays all the certificates in the target
trust_file. The certificates in the trust_file
are displayed in a descending ordered list,
starting from the beginning of the trust_file.
(Note: The counter starts from 1).
Specifies a PEM format
trust_file containing zero or more X509 certifi‐
cates.
Specifies a PEM format
cert_file containing one or more X509 certifi‐
cates.
Specifies a certificate order number in the
trust_file.
EXIT STATUS
The command returns one of the following values:
Successful completion
Error
When an error occurs, an error message is written to stderr.
EXAMPLES
Add a X509 certificate in cert.pem file to trust.pem file.
List all the X509 certificates in trust.pem file.
Remove a X509 certificate (certificate order number 2) from trust.pem
file.
AUTHOR
was developed by the Open Group OpenPegasus Open Source Software
project.
SEE ALSOopenssl(1).
ssltrustmgr(1M)