Merge pull request #78 from Yubico/oscarso-patch-1

Supplying --key when management key value is longer the default value
This commit is contained in:
Oscar
2016-06-28 17:42:10 -07:00
committed by GitHub
+7 -3
View File
@@ -16,8 +16,10 @@ Steps
----- -----
1. Generate the key: 1. Generate the key:
(--key[=STRING] is needed if the management key value is no longer the default value)
yubico-piv-tool -s 9a -a generate -o public.pem --key[=STRING]
yubico-piv-tool -s 9a -a generate -o public.pem
2. Request a certificate: 2. Request a certificate:
@@ -30,10 +32,12 @@ Steps
certreq -submit -attrib "CertificateTemplate:User" request.csr cert.crt certreq -submit -attrib "CertificateTemplate:User" request.csr cert.crt
4. Load the certificate in the: 4. Load the certificate in the:
(--key[=STRING] is needed if the management key value is not the default value)
yubico-piv-tool -s 9a -a import-certificate -i cert.crt yubico-piv-tool -s 9a -a import-certificate -i cert.crt --key[=STRING]
5. For it to be useful in windows a chuid must be set as well: 5. For it to be useful in windows a chuid must be set as well:
(only if that wasn't done earlier) (only if that wasn't done earlier)
(--key[=STRING] is needed if the management key value is no longer the default value)
yubico-piv-tool -a set-chuid yubico-piv-tool -a set-chuid --key[=STRING]