[Freeipa-users] certutil - how to delete an orphan key..

Rob Crittenden rcritten at redhat.com
Sat Apr 9 02:10:22 UTC 2016


Fraser Tweedale wrote:
> On Fri, Apr 08, 2016 at 03:39:49PM -0400, Rob Crittenden wrote:
>> Pawel Eljasz wrote:
>>> .. would anybody know?
>>> I realize this might be not the ideal place for such a question, sorry.
>>> thanks
>>> L
>>>
>>>
>>
>> I don't know that there is a way using a tool to delete a key from an NSS
>> database. Why do you want to? It won't hurt anything.
>>
>> rob
>>
> According to man page, to list contents of key database:
>
>      certutil ... -K
>
> and to delete a particular key:
>
>      certutil ... -F -n $KEY_ID

Can't believe I missed that, nice catch.

rob






More information about the Freeipa-users mailing list