Post date: Oct 04, 2019 8:0:16 AM
List Certificates:
certutil -L -d /etc/certdirectory
List individual Certificate:
certutil -L -d /etc/certdirectory -n "Cert's Nickname"
Delete Certificate:
certutil -D -d /etc/certdirectory -n "Cert's Nickname"
Add Certificate:
certutil -A -d /etc/certdirectory -n "Cert's Nickname"
PKI Server Specific:
pki-server subsystem-cert-find ca -i InstanceName
Start PKI Server:
systemctl start pki-tomcatd@InstanceNAme
Restart CA after startup failure:
pki-server subsystem-enable -i InstanceName ca
Set date (prior to cert expiration):
date MMddhhmmyyyy
date 010100001970
System Certs may need to be updated in /etc/pki/InsanceName/ca/CS.cfg