Go to main content

man pages section 1: User Commands

Exit Print View

Updated: Wednesday, July 27, 2022
 
 

pkcs11_inspect (1)

Name

pkcs11_inspect - print certificate contents

Synopsis

/usr/lib/pam_pkcs11/pkcs11_inspect [debug] [config_file=filename]

Description

pkcs11_inspect(1)                User Commands               pkcs11_inspect(1)



NAME
       pkcs11_inspect - print certificate contents

SYNOPSIS
       /usr/lib/pam_pkcs11/pkcs11_inspect [debug] [config_file=filename]


DESCRIPTION
       pkcs11_inspect uses the pam_pkcs11 library infrastructure to obtain the
       content of a certificate and display it.


       pkcs11_inspect uses the same configuration file and  arguments  as  the
       pam_pkcs11(7)  PAM  module.  It  loads defined mapper modules, and uses
       them to look into  the  certificate  for  required  entries,  that  is,
       ms_mapper looks for ms UPN entries, and so forth.


       When  a  mapper module finds a proper entry in the certificate, it con-
       verts to UTF-8 and prints it to stdout.

OPTIONS
       The following options are supported:

       config_file=fileame    Set the configuration file. The default value is
                              /etc/security/pam_pkcs11/pam_pkcs11.conf.


       debug                  Enable debugging output.



       As  it  uses  the  same configuration file as pam_pkcs11(7), all of the
       pam_pkcs11 options are available. Some of these options make  no  sense
       in  a  non-PAM  environment,  and  are  therefore  ignored. Some mapper
       options (mapfile, ignorecase) have no effect on  certificate  contents,
       and they are ignored as well.

EXIT STATUS
       The following exit values are returned:

       0    Successful completion.

            pkcs11_inspect  prints on stdout all certificate contents that are
            found for mappers.


       1    An error occurred.


EXAMPLES
       Example 1 Using pkcs_inspect


       The  following  example  runs  the  pkcs_inspect  command  without  any
       options:


         % pkcs11_inspect



       Example 2 Using pkcs_inspect with Options


       The following example runs the pkcs_inspect command with options:


         % pkcs11_inspect debug config_file=${HOME}/.pam_pkcs11.conf



FILES
       /etc/security/pam_pkcs11/pam_pkcs11.conf




AUTHORS
       Juan Antonio Martinez, jonsito@teleline.es

ATTRIBUTES
       See attributes(7) for descriptions of the following attributes:




       +-----------------------------+---------------------------------------+
       |      ATTRIBUTE TYPE         |           ATTRIBUTE VALUE             |
       +-----------------------------+---------------------------------------+
       |Availability                 |library/security/pam/module/pam-pkcs11 |
       +-----------------------------+---------------------------------------+
       |Interface Stability          |Uncommitted                            |
       +-----------------------------+---------------------------------------+

SEE ALSO
       pklogin_finder(1), attributes(7), pam_pkcs11(7)


       PAM-PKCS11 User Manual, http://www.opensc-project.org/pam_pkcs11



Solaris 11.4                      18 Jan 2012                pkcs11_inspect(1)