| .\" DO NOT MODIFY THIS FILE! It was generated by help2man 1.47.6. |
| .TH CREATEEKCERT "1" "March 2020" "createekcert 1.3" "User Commands" |
| .SH NAME |
| createekcert \- Runs TPM2 createekcert |
| .SH SYNOPSIS |
| .B createekcert |
| \fI\,-alg rsa -cakey cakey.pem -capwd rrrr -v\/\fR |
| .br |
| .B createekcert |
| \fI\,-alg ecc -cakey cakeyecc.pem -capwd rrrr -caalg ec -v\/\fR |
| .SH DESCRIPTION |
| createekcert |
| .PP |
| Provisions an EK certificate, using the default IWG template |
| E.g., |
| .TP |
| [\-pwdp |
| platform hierarchy password (default empty)] |
| .TP |
| \fB\-cakey\fR |
| CA PEM key file name |
| .TP |
| [\-capwd |
| CA PEM key password (default empty)] |
| .TP |
| [\-caalg |
| CA key algorithm (rsa or ec) (default rsa)] |
| .TP |
| [\-alg |
| (rsa or ecc certificate) (default rsa)] |
| .TP |
| [\-noflush |
| do not flush the primary key] |
| .TP |
| [\-of |
| DER certificate output file name] |
| .PP |
| Currently: |
| .IP |
| Certificate issuer, subject, and validity are hard coded. |