On 2/15/2016 5:35 PM, Endi Sukma Dewata wrote:
A new PKCS #12 attribute has been defined to store NSS certificate
trust flags in PKCS #12 file. The PKCS12Util has been modified to
store the trust flags during export and reset the trust flags in
NSS database during import.
https://fedorahosted.org/pki/ticket/1742
New patch attached. It adds --no-trust-flags to optionally not include
the trust flags during import/export operation as shown in this page:
http://pki.fedoraproject.org/wiki/PKI_PKCS12_CLI
The code has been tested to work with and without the trust flags.
--
Endi S. Dewata