[Freeipa-users] certutil - how to delete an orphan key..

Fraser Tweedale ftweedal at redhat.com
Sat Apr 9 00:18:38 UTC 2016


On Fri, Apr 08, 2016 at 03:39:49PM -0400, Rob Crittenden wrote:
> Pawel Eljasz wrote:
> >.. would anybody know?
> >I realize this might be not the ideal place for such a question, sorry.
> >thanks
> >L
> >
> >
> 
> I don't know that there is a way using a tool to delete a key from an NSS
> database. Why do you want to? It won't hurt anything.
> 
> rob
> 
According to man page, to list contents of key database:

    certutil ... -K

and to delete a particular key:

    certutil ... -F -n $KEY_ID

Cheers,
Fraser




More information about the Freeipa-users mailing list