lskeyserverkeysecure

Use the lskeyserverkeysecure command to display the system-wide Gemalto SafeNet KeySecure (KeySecure) key server configuration.

Syntax

lskeyserverkeysecure [ -nohdr ] [ -delimdelimiter ]

Parameters

-nohdr
(Optional) By default, headings are displayed for each column of data in a concise style view, and for each item of data in a detailed style view. The -nohdr parameter suppresses the display of these headings.
Note: If there is no data to be displayed, headings are not displayed.
-delimdelimiter
(Optional) By default in a concise view, all columns of data are space-separated. The width of each column is set to the maximum width of each item of data. In a detailed view, each item of data has its own row, and if the headers are displayed, the data is separated from the header by a space. The -delim parameter overrides this behavior. Valid input for the -delim parameter is a 1-byte character. If you enter -delim : on the command line, the colon character (:) separates all items of data in a concise view; for example, the spacing of columns does not occur. In a detailed view, the data is separated from its header by the specified delimiter.

Description

This table shows the possible output:
Table 1. lskeyserverkeysecure output
Attribute Description
status Displays the status of this key server type. The possible values are:
  • disabled
  • enabled_inactive
  • prepared
  • enabled_active
username_set Displays whether a user name is set for this key server type. The values are yes or no.
password_set Displays whether a password is set for this key server type. The values are yes or no.
certificate Displays a human readable description of the whole server SSL certificate (as generated by openssl x509 -text). This value is blank if no certificate exists.

An invocation example

lskeyserverkeysecure

The resulting output:

status enabled_active
username_set no
password_set no
certificate 75 fields
    Data:
        Version: 3 (0x2)
        Serial Number: 0 (0x0)
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=GB, ST=Hursley, L=Hursley, O=IBM, OU=SSG, CN=pokeymon/emailAddress=support
        Validity
            Not Before: Feb  8 16:09:57 2018 GMT
            Not After : Feb  9 16:09:57 2019 GMT
        Subject: C=GB, ST=Hursley, L=Hursley, O=IBM, OU=SSG, CN=pokeymon/emailAddress=support
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:ae:0f:48:41:02:e4:b0:eb:05:35:8e:f3:f4:b4:
                    09:e5:45:40:08:b7:7d:53:ac:f6:e9:f7:31:bb:0a:
                    c3:18:dc:39:9c:5e:bf:46:90:28:45:27:57:33:15:
                    ef:8f:9e:5c:df:7b:1e:1f:e4:69:6d:bf:98:7b:3c:
                    3f:4f:6b:fb:d4:6a:e0:2c:d9:b0:11:cc:ad:95:8a:
                    79:ee:b4:8f:fe:eb:76:47:65:fb:01:38:d7:ad:1d:
                    b5:86:ec:b8:6d:84:a4:e0:41:cf:af:0e:7a:fa:2e:
                    a0:70:30:1c:2d:11:fa:b5:fe:79:60:e5:b8:e4:11:
                    0c:67:13:c5:50:70:c3:24:d1:66:44:8c:ac:1a:d2:
                    cd:9d:aa:be:37:ed:9b:ce:b4:d5:8d:27:c2:00:9d:
                    64:1c:ff:db:60:52:79:a0:1c:38:41:14:d5:4b:cb:
                    6e:45:77:02:fd:6a:77:79:a4:8b:8e:7a:93:19:06:
                    73:71:33:dc:2f:10:4a:da:01:74:a6:76:71:97:4a:
                    aa:79:0e:cd:02:08:4d:06:6e:95:87:39:f7:53:63:
                    a1:db:00:9e:4d:e4:14:f7:d8:c2:13:45:17:11:5b:
                    03:06:dd:8c:0c:f3:f5:66:a5:83:ee:a5:83:7e:5b:
                    91:a0:d3:5f:22:97:71:d1:7a:98:01:53:3a:47:69:
                    37:73
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: 
                CA:TRUE
            Netscape Cert Type: 
                SSL Client, SSL Server
    Signature Algorithm: sha256WithRSAEncryption
         ad:7f:8a:f5:94:78:e1:a7:62:5f:6f:10:68:2e:c4:24:4e:1f:
         78:ce:ec:73:3e:60:95:89:db:f8:1c:19:5f:4e:e8:d3:1a:f1:
         a3:b1:62:7c:cb:66:8c:92:c8:dc:da:93:0c:d5:a7:9a:dc:b3:
         4c:e9:22:de:3d:74:b1:fc:dd:35:5a:89:a0:bb:49:de:ba:ba:
         8e:03:5a:3d:87:a5:ff:46:90:90:aa:8a:5c:ed:7a:e6:28:db:
         8a:b6:ba:71:d1:b7:79:90:ae:0e:ac:1c:7a:d3:39:22:cc:c1:
         8a:c2:34:20:c6:1a:aa:82:e7:a2:03:f9:a8:1f:31:19:fe:4b:
         78:7a:ec:f4:ad:fc:ba:77:c0:8c:2b:f0:ff:d9:01:eb:fd:68:
         41:c2:de:e5:17:31:d8:eb:c1:4b:bd:3e:95:74:62:ca:ae:ce:
         79:85:37:10:88:c3:96:c1:8a:fc:0b:49:ea:ab:69:a5:e3:0f:
         15:cb:1f:88:f6:4b:d7:10:0a:44:c8:9a:ea:58:02:bc:1a:2b:
         c8:9c:66:99:58:77:7f:ee:ca:c7:1b:47:66:68:24:1d:c0:6b:
         02:d5:44:a7:f2:a6:e7:85:9f:5b:51:73:52:38:ed:81:fa:4a:
         ab:f8:af:3b:fd:4b:c7:ba:73:05:59:c7:7f:cf:00:02:8e:8b:
         93:cb:5b:5f
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----