summaryrefslogtreecommitdiff
path: root/trust/p11-kit-extract-trust.in
diff options
context:
space:
mode:
authorStef Walter <stef@thewalter.net>2013-06-17 14:51:49 +0200
committerStef Walter <stef@thewalter.net>2013-06-17 15:22:49 +0200
commit93f197792150ae2e2e3ffafb903dfab6854915cb (patch)
tree13a53debeaf369189cbc0d1728a055c07ee416f5 /trust/p11-kit-extract-trust.in
parent41d2a28b89af41799d01d5973d026712d9174f31 (diff)
trust: Move the extract-trust external placeholder command into trust/
Diffstat (limited to 'trust/p11-kit-extract-trust.in')
-rwxr-xr-xtrust/p11-kit-extract-trust.in26
1 files changed, 26 insertions, 0 deletions
diff --git a/trust/p11-kit-extract-trust.in b/trust/p11-kit-extract-trust.in
new file mode 100755
index 0000000..c7214e9
--- /dev/null
+++ b/trust/p11-kit-extract-trust.in
@@ -0,0 +1,26 @@
+#!/bin/sh
+
+# This script is a placeholder designed to be replaced when this software
+# has been customized for distribution. It should be symlinked linked to the
+# distribution's update-ca-certificates or update-ca-trust command as
+# appropriate. In the future this script will be called when the PKCS#11
+# trust module is used to modifiy trust anchors and related data.
+
+if [ $# -ne 0 ]; then
+ echo "usage: p11-kit extract-trust" >&2
+ exit 2
+fi
+
+echo "p11-kit: the placeholder extract-trust command has not been customized by your distribution." >&2
+
+# You can use commands like this to extract data from trust modules
+# into appropriate locations for your distribution.
+#
+# p11-kit extract --format=openssl-bundle --filter=ca-anchors \
+# --overwrite /tmp/openssl-bundle.pem
+# p11-kit extract --format=pem-bundle --filter=ca-anchors --overwrite \
+# --purpose server-auth /tmp/server-auth-bundle.pem
+# p11-kit extract --format=java-cacerts --filter=ca-anchors --overwrite \
+# --purpose server-auth /tmp/cacerts
+
+exit 1