blob: 9901a3fa4f5eed57f41554e8e0376d54540c786f [file] [log] [blame]
.\" DO NOT MODIFY THIS FILE! It was generated by help2man 1.47.6.
.TH CREATEEKCERT "1" "March 2020" "createekcert 1.3" "User Commands"
.SH NAME
createekcert \- Runs TPM2 createekcert
.SH SYNOPSIS
.B createekcert
\fI\,-alg rsa -cakey cakey.pem -capwd rrrr -v\/\fR
.br
.B createekcert
\fI\,-alg ecc -cakey cakeyecc.pem -capwd rrrr -caalg ec -v\/\fR
.SH DESCRIPTION
createekcert
.PP
Provisions an EK certificate, using the default IWG template
E.g.,
.TP
[\-pwdp
platform hierarchy password (default empty)]
.TP
\fB\-cakey\fR
CA PEM key file name
.TP
[\-capwd
CA PEM key password (default empty)]
.TP
[\-caalg
CA key algorithm (rsa or ec) (default rsa)]
.TP
[\-alg
(rsa or ecc certificate) (default rsa)]
.TP
[\-noflush
do not flush the primary key]
.TP
[\-of
DER certificate output file name]
.PP
Currently:
.IP
Certificate issuer, subject, and validity are hard coded.