Dr Stephen Henson wrote:
> I've released preliminary details of Netscape private key database
> format, check out http://www.drh-consultancy.demon.co.uk/key3.html

I'm trying to extract private keys from Netscape Enterprise Server 3.5 or
3.6, and wonder if anyone knows details of the format. The above seems to
give info for Communicator; there are also instructions involving using NES
4.0 to import it, then write it out in PKCS#12. I need to be able to do it
directly using only NES 3.x.

(The 'communicator' format derives a triple-DES key from a password & two
salt values. NES3.6 seems to have a password and the same two salts, but
derives (apparently) an RC4 key). 

Also, I found an old post in the ssl-users archive from Tom Weinstein at
Netscape to the effect that "We change the .db format so often we don't want
to document it, but we'll provide a key export utility". I've never found
such a thing in NES 3.x - does this actually exist?

Has anyone already decoded the format, or is working on it? If not, I'm
going to have to start taking the code to bits...

Cheers
IH


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to