openssl + kyrtool (domino)


article
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0073175
donwload keytool
https://support.hcltechsw.com/sys_attachment.do?sys_id=ff7ba618dbf6e89ca45ad9fcd39619ef

https://igoldobin.wordpress.com/2018/01/17/%D1%83%D1%81%D1%82%D0%B0%D0%BD%D0%BE%D0%B2%D0%BA%D0%B0-%D1%81%D0%B5%D1%80%D1%82%D0%B8%D1%84%D0%B8%D0%BA%D0%B0%D1%82%D0%B0-%D0%BD%D0%B0-%D1%81%D0%B5%D1%80%D0%B2%D0%B5%D1%80-ibm-domino-%D1%81-%D0%BF/
__________________________________________________________________________

C:\Lotus\Notes>kyrtool =c:\lotus\notes\notes.ini create -k c:\lotus\notes\data\keyringwildcard.kyr -p 123_45

kyrtool verify “c:\e\server.txt”

если извлечь из pfx ______________________________________

openssl pkcs12 -in certificate.pfx -nocerts -out key.pem -nodes
openssl pkcs12 -in certificate.pfx -nokeys -out cert.pem
openssl rsa -in key.pem -out server1.key

type server.key cert.pem>server2.txt

________________________________________________________

type server.key server.crt CACertN.crt>server1.txt


C:\Lotus\Notes>kyrtool =c:\lotus\notes\notes.ini import all -k keyringwildcard.kyr -i c:\e\server.txt


C:\Lotus\Notes>kyrtool =c:\lotus\notes\notes.ini import all -k c:\e2\keyringwild
card.kyr -i c:\e2\server.txt

Using keyring path 'c:\e2\keyringwildcard.kyr'
Successfully read 2048 bit RSA private key
SECIssUpdateKeyringPrivateKey succeeded
SECIssUpdateKeyringLeafCert succeeded


C:\Lotus\Notes>

Еще вариант

https://ds_infolib.hcltechsw.com/ldd/ndseforum.nsf/xpTopicThread.xsp?documentId=AA8BFF37914C464685257DD5005D8ADF


I had the same issue with our new RapidSSL certificate. Try to import step by step and not all together in one file:

  1. Import keys
    kyrtool ="C:\Notes\notes.ini" import keys  -k "C:\Notes\Data\keyring.kyr" -i "C:\Notes\Data\server.key" -n "CN=my.domain.com"
     
  2. Import roots
    kyrtool ="C:\Notes\notes.ini" import roots -k "C:\Notes\Data\keyring.kyr" -i "C:\Notes\Data\root.pem"
    kyrtool ="C:\Notes\notes.ini" import roots -k "C:\Notes\Data\keyring.kyr" -i "C:\Notes\Data\intermediateroot.pem"
     
  3. Import cert
    kyrtool ="C:\Notes\notes.ini" import certs -k "C:\Notes\Data\keyring.kyr" -i "C:\Notes\Data\server.pem"

Regards,

Gilbert

Комментарии

Популярные сообщения из этого блога

У вас нет прав для отправки сообщения вместо указанного пользователя. Ошибка: [0x80070005-0x0004dc-0x000524]

Поиск и удаление писем в ящиках Exchange Server

KSMG Подготовка конфигурационных файлов для подключения к LDAP