Actually I found the answer myself at: http://www.drh-consultancy.demon.co.uk/nskey.html. kb Keith Brown wrote: > I have key3.db/cert7.db key pair files holding a valid certificate > signed by Verisign. Also have the PEM format for the certificate emailed > by Verisign. I originally requested and installed the certificate using > iPlanet Console 5.x / LDAP 5. The certificate works with Enterprise > Server, Console and LDAP servers. But will not work with iDAR, as iDAR > has non-standard server SSL configuration. iDAR requires PEM files > holding Certificate and Private Keys - not the key3.db/cert7.db files. > > Does anyone know how to extract the private key to a PEM file, so I can > transfer it to iDAR? Looked at using keyutil from iPlanet, but it does > not appear to have export capability for private key. Looked at Sun's > keytool, but it requires keystore database format. > > kb
begin:vcard n:Brown;Keith tel;home:919-493-6875 tel;work:919-419-5722 x-mozilla-html:FALSE url:http://www.oit.duke.edu/da org:Duke University;Directory Services version:2.1 email;internet:[EMAIL PROTECTED] title:Data Architect adr;quoted-printable:;;3100 Tower Blvd.=0D=0ASuite 400;Durham;NC;27707; fn:Keith Brown end:vcard
