Using database directory /var/opt/SUNWappserver/domains/domain1/config ...
Listing of PKCS#11 Modules
-----------------------------------------------------------
1. NSS Internal PKCS#11 Module
slots: 2 slots attached
status: loaded
slot: NSS Internal Cryptographic Services
token: NSS Generic Crypto Services
slot: NSS User Private Key and Certificate Services
token: NSS Certificate DB
2. Sun Crypto Accelerator
library name: /opt/SUNWconn/crypto/lib/libpkcs11.so
slots: 1 slot attached
status: loaded
slot: Sun Crypto Accelerator:mytoken
token: mytoken
-----------------------------------------------------------
Managing KeysAnd Certicates
Thissection describes a few common procedures for creating and managing keys and
certicatesusing certutil andpk12util. For details on certutil andpk12util, see “Using
NetworkSecurity Services (NSS) Tools” on page 116 and documentation on the NSS Security
Toolssite at http://www.mozilla.org/projects/security/pki/nss/tools.
Note– By conguring a PKCS#11 provider in the java.security propertiesle (located in the
JAVA_HOME/jre/lib/securitydirectoryof the Java runtime), you can also use the J2SE
keytoolutility to manage keys and certicates. For details on using keytool, and Java PKCS#11
ReferenceGuide at
http://java.sun.com/j2se/1.5.0/docs/guide/security/p11guide.html.
Thissection describes the following topics:
“ListingKeys and Certicates ” on page 123
“WorkingWith Private Keys and Certicates” on page 124
UsingHardwareCrypto Accelerator With Enterprise Server
SunGlassFishEnterprise Ser ver2.1 Administration Guide December 2008122