Certificate conversion
PKC12 (browser friendly) -> PEM (Globus friendly)
- user certificate
$ openssl pkcs12 -in dusanra.p12 -out usercert.pem -nokeys -clcerts
Enter Import Password:
MAC verified OK
- user key (key is encrypted
$ openssl pkcs12 -in dusanra.p12 -out userkey.pem -nocerts
Enter Import Password:
MAC verified OK
Enter PEM pass phrase:
Verifying - Enter PEM pass phrase:
- host & service certificate
$ openssl pkcs12 -in grid01.rcub.bg.ac.rs.p12 -out hostcert.pem -nokeys -clcerts
Enter Import Password:
MAC verified OK
- host & service key (key is not encrypted)
openssl pkcs12 -in grid01.rcub.bg.ac.rs.p12 -out hostkey.pem -nocerts -nodes
Enter Import Password:
MAC verified OK
PEM (Globus friendly) -> PKC12 (browser friendly)
- $ openssl pkcs12 -export -in usercert.pem -inkey userkey.pem -certfile /etc/grid-security/certificates//serial-number.pem -out dusanra.p12
Enter pass phrase for userkey.pem:
Enter Export Password:
Verifying - Enter Export Password: