[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Handle-info] generating private/public keys and client certificate for the handle API via openssl



They can send you an RSA public key in PEM format, which OpenSSL can do.  Then you can use hdl-convert-key from the Handle.Net distribution to convert the PEM-formatted key into Handle format.  You can either use "hdl-convert-key input.pem -o output.bin" or "hdl-convert-key < input.pem > output.bin".

Robert

> On Apr 5, 2016, at 4:23 AM, Robert Verkerk <robert.verkerk@surfsara.nl> wrote:
> 
> Hi,
> 
> We provide/host prefixes and handles for several customers. We have implemented handle version 8.1.0. This enables the handle API with client certificates.
> We know how to generate a private/public key-pair and the client certificate for the handle API via the handle tools and a very small bit using openSSL.
> 
> If we are to allow customers to generate it they will need to download the handle tools. Or we need to do it for them. This is not something they want.
> 
> Is there a way to use only openSSL at the customer site to generate all necessary bits for the private/public key-pair and the client certificate?
> This so they only have to provide us with the public key that we upload in the proper admin handle with the proper index. The rest stays private at the customer site.
> 
> 
> -- 
> Greetings,
> 
> Robert Verkerk
> systeem programmeur
> Data Services
> 
> Robert Verkerk
> | Dataservices | SURFsara
> 
> 
> 
> 
> 
> 
> 
> 
> 
> _______________________________________________
> Handle-Info mailing list
> Handle-Info@cnri.reston.va.us
> http://www.handle.net/mailman/listinfo/handle-info

_______________________________________________
Handle-Info mailing list
Handle-Info@cnri.reston.va.us
http://www.handle.net/mailman/listinfo/handle-info