summaryrefslogtreecommitdiffstats
path: root/base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
diff options
context:
space:
mode:
authorEndi S. Dewata <edewata@redhat.com>2016-02-13 09:42:14 +0100
committerEndi S. Dewata <edewata@redhat.com>2016-02-17 21:24:49 +0100
commit6947854a3ab6ee4f296a5f97850f5521572683a1 (patch)
treec22fe4c16811b77920cafd2e811050067f3b3632 /base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
parent54849505729d3f6345bc7b530e5a40c14ff36116 (diff)
downloadpki-6947854a3ab6ee4f296a5f97850f5521572683a1.tar.gz
pki-6947854a3ab6ee4f296a5f97850f5521572683a1.tar.xz
pki-6947854a3ab6ee4f296a5f97850f5521572683a1.zip
Added PKCS #12 attribute to store certificate trust flags.
A new PKCS #12 attribute has been defined to store NSS certificate trust flags in PKCS #12 file. The PKCS12Util has been modified to store the trust flags during export and reset the trust flags in NSS database during import. https://fedorahosted.org/pki/ticket/1742
Diffstat (limited to 'base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java')
-rw-r--r--base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java5
1 files changed, 5 insertions, 0 deletions
diff --git a/base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java b/base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
index 1e6774004..e5acd0600 100644
--- a/base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
+++ b/base/java-tools/src/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
@@ -59,6 +59,8 @@ public class PKCS12ExportCLI extends CLI {
option.setArgName("path");
options.addOption(option);
+ options.addOption(null, "no-trust-flags", false, "Do not include trust flags");
+
options.addOption("v", "verbose", false, "Run in verbose mode.");
options.addOption(null, "debug", false, "Run in debug mode.");
options.addOption(null, "help", false, "Show help message.");
@@ -120,8 +122,11 @@ public class PKCS12ExportCLI extends CLI {
Password password = new Password(passwordString.toCharArray());
+ boolean trustFlagsEnabled = !cmd.hasOption("no-trust-flags");
+
try {
PKCS12Util util = new PKCS12Util();
+ util.setTrustFlagsEnabled(trustFlagsEnabled);
util.exportData(filename, password);
} finally {
password.clear();