Skip to content
Open
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
7 changes: 7 additions & 0 deletions trillian/docs/ManualDeployment.md
Original file line number Diff line number Diff line change
Expand Up @@ -258,6 +258,13 @@ ASN1 OID: prime256v1
NIST CURVE: P-256
```

**Cross-check**: Convert the private and public key into DER format encoded as a hex string that can be set in the configuration file:
```bash
% openssl pkcs8 -in privkey.pem -topk8 -nocrypt -outform der -out privkey.der
% xxd -p privkey.der | tr -d '\n' | sed 's/../\\x&/g' > privkey.hex
```
Copy the contents of privkey.hex (single line) into the private_key stanza in the configuration file. Repeat the process for the public key.

**Cross-check**: Once the CTFE is configured and running
([below](#ctfe-start-up)), the `ctclient` command-line tool allows signature
checking against the public key with the `--pub_key` option:
Expand Down
Loading