{"componentChunkName":"component---src-templates-manual-template-tsx","path":"/manuals/client-user/64/ssh-certview-g3.html","webpackCompilationHash":"d1750f6cc413894a8b5c","result":{"data":{"promoBlocks":{"edges":[{"node":{"contentful_id":"47glnSpWzXeFylv2vfQEF8","internal":{"type":"ContentfulPromotionBlock"},"title":{"internal":{"type":"ContentfulHeading"},"contentful_id":"7KIOfSfgwJnCXuvRN6CfrP","textContent":"Standing privileges are a risk with PAM","color":"black","size":"medium"},"subTitle":null,"content":{"nodeType":"document","internal":{"content":"{\"nodeType\":\"document\",\"data\":{},\"content\":[{\"nodeType\":\"paragraph\",\"content\":[{\"nodeType\":\"text\",\"value\":\"Start your journey towards a just-in-time (JIT) model with zero standing privileges (ZSP). Read 'Remove Standing Privileges Through a Just-In-Time PAM Approach' by Gartner , courtesy of SSH.COM.\\n \\n\",\"marks\":[],\"data\":{}}],\"data\":{}}]}"}},"callToAction":{"internal":{"type":"ContentfulButton"},"contentful_id":"19EUesynV2Z7HHcuJk0BAS","content":"Download Gartner research","internalLink":null,"externalLink":"https://info.ssh.com/gartner_research_privileged_access_management","assetLink":null,"anchor":null},"picture":{"internal":{"type":"ContentfulAsset"},"contentful_id":"2ClylmBswcfDx4XdO7NTmL","title":"ICON Gartner ZSP","description":"","file":{"url":"//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png","contentType":"image/png"},"fluid":{"aspectRatio":1,"src":"//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png?w=3000&q=50","srcSet":"//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png?w=750&h=750&q=50 750w,\n//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png?w=1500&h=1500&q=50 1500w,\n//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png?w=1601&h=1601&q=50 1601w","sizes":"(max-width: 3000px) 100vw, 3000px"},"fixed":{"width":3000,"height":3000,"src":"//images.ctfassets.net/0lvk5dbamxpi/2ClylmBswcfDx4XdO7NTmL/78e899153ed66aec3b03b9a2cacd112d/ICON_Gartner_ZSP_ICON_Gartner.png?w=3000&q=50","srcSet":""}},"centered":true,"indentMainContent":null,"transparentBackground":null,"imageScale":70,"imagePadding":null,"name":"WIKI migration side promo block2","product":null,"funnel":null,"topic":null,"keywords":null,"type":null,"priority":null,"globalOverride":null}},{"node":{"contentful_id":"6dfNaA1UlY4bADKQk6awhs","internal":{"type":"ContentfulPromotionBlock"},"title":{"internal":{"type":"ContentfulHeading"},"contentful_id":"49Tb2wSR21P5C2cpcgMZ3","textContent":"Get Multi-cloud PAM software - for free!","color":"black","size":"medium"},"subTitle":null,"content":{"nodeType":"document","internal":{"content":"{\"data\":{},\"content\":[{\"data\":{},\"content\":[{\"data\":{},\"marks\":[],\"value\":\"PrivX® Free replaces your in-house jump hosts and combines your AWS, GCP and Azure access into one multi-cloud solution.\\n \\n\",\"nodeType\":\"text\"}],\"nodeType\":\"paragraph\"}],\"nodeType\":\"document\"}"}},"callToAction":{"internal":{"type":"ContentfulButton"},"contentful_id":"1dmQ13jyyZ46ID07eVNVFb","content":"PrivX Free","internalLink":null,"externalLink":"https://info.ssh.com/privx-free-access-management-software","assetLink":null,"anchor":null},"picture":{"internal":{"type":"ContentfulAsset"},"contentful_id":"4UUYdjING8micwZQur5o6d","title":"ICON computer (search)","description":"","file":{"url":"//images.ctfassets.net/0lvk5dbamxpi/4UUYdjING8micwZQur5o6d/1b378a0f4646075c7a4788f1afffbabe/ICON_computer__search_.svg","contentType":"image/svg+xml"},"fluid":{"aspectRatio":null,"src":null,"srcSet":null,"sizes":null},"fixed":{"width":null,"height":null,"src":null,"srcSet":null}},"centered":true,"indentMainContent":null,"transparentBackground":null,"imageScale":70,"imagePadding":null,"name":"WIKI migration side promo block1","product":null,"funnel":null,"topic":null,"keywords":null,"type":null,"priority":null,"globalOverride":null}}]}},"pageContext":{"isCreatedByStatefulCreatePages":false,"body":"<div bgcolor=\"white\" text=\"black\" link=\"#0000FF\" vlink=\"#840084\" alink=\"#0000FF\"><table width=\"100%\" border=\"0\" cellspacing=\"0\" cellpadding=\"0\" class=\"header\"><tbody><tr><td><a href=\"http://www.ssh.com/\"><img src=\"images/colorbar_blue.png\" alt=\"SSH\" width=\"100%\" height=\"80\" border=\"0\" style=\"position: relative; top:0px;left:0px;\"><img src=\"images/logo_ssh_nega.png\" height=\"40\" border=\"0\" style=\"position: absolute; top:20px;left:55px;\"></a></td></tr></tbody></table><div class=\"navheader\"><table width=\"100%\" summary=\"Navigation header\"><tr><td width=\"40%\" align=\"left\"></td><th width=\"20%\" align=\"center\"></th><td width=\"40%\" align=\"right\"><a accesskey=\"h\" href=\"index.html\"><img src=\"images/home.gif\" alt=\"Home\"></a><a href=\"ix01.html\"><img src=\"images/index.gif\"></a> <a accesskey=\"p\" href=\"ssh-scepclient-g3.html\"><img src=\"images/prev.gif\" alt=\"Prev\"></a> <a accesskey=\"u\" href=\"client-commandlinetools.html\"><img src=\"images/up.gif\" alt=\"Up\"></a> <a accesskey=\"n\" href=\"ssh-ekview-g3.html\"><img src=\"images/next.gif\" alt=\"Next\"></a>  </td></tr></table></div><div class=\"refentry\"><a name=\"ssh-certview-g3\"></a><div class=\"titlepage\"></div><div class=\"refnamediv\"><h2><span class=\"refentrytitle\"><a name=\"ssh-certview-g3-title\"></a>ssh-certview-g3</span></h2><p>ssh-certview-g3 — certificate viewer</p></div><a class=\"indexterm\" name=\"idp20354\"></a><a class=\"indexterm\" name=\"idp20356\"></a><div class=\"refsect1\"><a name=\"idp20358\"></a><h2>Synopsis</h2><div class=\"cmdsynopsis\"><p><code class=\"command\">ssh-certview-g3</code> <br> [<code class=\"option\">options</code>...]  <em class=\"replaceable\"><code>file</code></em> <br> [<code class=\"option\">options</code>...]  <em class=\"replaceable\"><code>file ...</code></em> </p></div></div><div class=\"refsect1\"><a name=\"idp20372\"></a><h2>Description</h2><p>The <span class=\"command\"><strong>ssh-certview-g3</strong></span> program <span class=\"phrase\">(<span class=\"command\"><strong>ssh-certview-g3.exe</strong></span> on Windows)</span> is a \nsimple command-line application, capable of decoding and showing X.509 \ncertificates, CRLs, and certification requests. The command output is \nwritten to the standard output.</p></div><div class=\"refsect1\"><a name=\"idp20378\"></a><h2>Options</h2><p>The following options are available:</p><div class=\"variablelist\"><dl class=\"variablelist\"><dt><span class=\"term\"><code class=\"option\">-h</code></span></dt><dd><p>Displays a short help.</p></dd><dt><span class=\"term\"><code class=\"option\">-verbose</code></span></dt><dd><p>Gives more diagnostic output.</p></dd><dt><span class=\"term\"><code class=\"option\">-quiet</code></span></dt><dd><p>Gives no diagnostic output.</p></dd><dt><span class=\"term\"><code class=\"option\">-auto</code></span></dt><dd><p>The next input file type is auto-detected (default).</p></dd><dt><span class=\"term\"><code class=\"option\">-cert</code></span></dt><dd><p>The next input file is a certificate.</p></dd><dt><span class=\"term\"><code class=\"option\">-certpair</code></span></dt><dd><p>The next input file is a cross-certificate pair.</p></dd><dt><span class=\"term\"><code class=\"option\">-crmf</code></span></dt><dd><p>The next input file is a CRMF certification request.</p></dd><dt><span class=\"term\"><code class=\"option\">-req</code></span></dt><dd><p>The next input file is a PKCS #10 certification request.</p></dd><dt><span class=\"term\"><code class=\"option\">-crl</code></span></dt><dd><p>The next input file is a CRL.</p></dd><dt><span class=\"term\"><code class=\"option\">-prv</code></span></dt><dd><p>The next input file is a private key.</p></dd><dt><span class=\"term\"><code class=\"option\">-pkcs12</code></span></dt><dd><p>The next input file is a PKCS#12 package.</p></dd><dt><span class=\"term\"><code class=\"option\">-ssh2</code></span></dt><dd><p>The next input file is an SSH2 public key.</p></dd><dt><span class=\"term\"><code class=\"option\">-spkac</code></span></dt><dd><p>The next input file is a Netscape-generated SPKAC request.</p></dd><dt><span class=\"term\"><code class=\"option\">-noverify</code></span></dt><dd><p>Does not check the validity of the signature on the input certificate.</p></dd><dt><span class=\"term\"><code class=\"option\">-autoenc</code></span></dt><dd><p>Determines PEM/DER automatically (default).</p></dd><dt><span class=\"term\"><code class=\"option\">-pem</code></span></dt><dd><a class=\"indexterm\" name=\"idp20461\"></a><p>Assumes that the input file is in PEM (ASCII base-64) format. \nThis option allows both actual PEM (with headers and footers), \nand plain base-64 (without headers and footers).\nAn example of PEM header and footer is shown below:\n</p><pre class=\"screen\">-----BEGIN CERTIFICATE-----\nencoded data\n-----END CERTIFICATE-----\n</pre></dd><dt><span class=\"term\"><code class=\"option\">-der</code></span></dt><dd><p>Assumes that the input file is in DER format.</p></dd><dt><span class=\"term\"><code class=\"option\">-hexl</code></span></dt><dd><a class=\"indexterm\" name=\"idp20474\"></a><p>Assumes that the input file is in Hexl format. (Hexl is a \ncommon Unix tool for outputting binary files in a certain hexadecimal \nrepresentation.)</p></dd><dt><span class=\"term\"><code class=\"option\">-skip </code><em class=\"replaceable\"><code>number</code></em></span></dt><dd><p>Skips <em class=\"replaceable\"><code>number</code></em> bytes from the beginning of input before trying to \ndecode. This is useful if the file contains some garbage before the \nactual contents. </p></dd><dt><span class=\"term\"><code class=\"option\">-ldap</code></span></dt><dd><p>Prints names in LDAP order.</p></dd><dt><span class=\"term\"><code class=\"option\">-utf8</code></span></dt><dd><p>Prints names in UTF-8.</p></dd><dt><span class=\"term\"><code class=\"option\">-latin1</code></span></dt><dd><p>Prints names in ISO-8859-1.</p></dd><dt><span class=\"term\"><code class=\"option\">-base10</code></span></dt><dd><p>Outputs big numbers in base-10 (default).</p></dd><dt><span class=\"term\"><code class=\"option\">-base16</code></span></dt><dd><p>Outputs big numbers in base-16.</p></dd><dt><span class=\"term\"><code class=\"option\">-base64</code></span></dt><dd><p>Outputs big numbers in base-64.</p></dd><dt><span class=\"term\"><code class=\"option\">-width </code><em class=\"replaceable\"><code>number</code></em></span></dt><dd><p>Sets output width (<em class=\"replaceable\"><code>number</code></em> characters).</p></dd></dl></div></div><div class=\"refsect1\"><a name=\"idp20521\"></a><h2>Example</h2><p>For example, using a certificate downloaded from <code class=\"code\">pki.ssh.com</code>, \nwhen the following command is given:</p><pre class=\"screen\">$ ssh-certview-g3 -width 70 ca-certificate.cer\n</pre><p>The following output is produced:</p><pre class=\"programlisting\">Certificate =\n  SubjectName = &lt;C=FI, O=SSH Communications Security Corp, CN=Secure\n    Shell Test CA&gt;\n  IssuerName = &lt;C=FI, O=SSH Communications Security Corp, CN=Secure\n    Shell Test CA&gt;\n  SerialNumber= 34679408\n  SignatureAlgorithm = rsa-pkcs1-sha1\n  Certificate seems to be self-signed.\n      * Signature verification success.\n  Validity =\n    NotBefore = 2003 Dec  3rd, 08:04:27 GMT\n    NotAfter  = 2005 Dec  2nd, 08:04:27 GMT\n  PublicKeyInfo =\n    PublicKey =\n      Algorithm name (SSH) : if-modn{sign{rsa-pkcs1-md5}}\n      Modulus n  (1024 bits) :\n        9635680922805930263476549641957998756341022541202937865240553\n        9374740946079473767424224071470837728840839320521621518323377\n        3593102350415987252300817926769968881159896955490274368606664\n        0759644131690750532665266218696466060377799358036735475902257\n        6086098562919363963470926690162744258451983124575595926849551\n        903\n      Exponent e (  17 bits) :\n        65537\n  Extensions =\n    Available = authority key identifier, subject key identifier, key\n      usage(critical), basic constraints(critical), authority\n      information access\n    KeyUsage = DigitalSignature KeyEncipherment KeyCertSign CRLSign\n        [CRITICAL]\n    BasicConstraints =\n      PathLength = 0\n      cA         = TRUE\n        [CRITICAL]\n    AuthorityKeyID =\n      KeyID =\n        eb:f0:4d:b5:b2:4c:be:47:35:53:a8:37:d2:8d:c8:b2:f1:19:71:79\n    SubjectKeyID =\n      KeyId =\n        eb:f0:4d:b5:b2:4c:be:47:35:53:a8:37:d2:8d:c8:b2:f1:19:71:79\n    AuthorityInfoAccess =\n      AccessMethod = 1.3.6.1.5.5.7.48.1\n      AccessLocation =\n        Following names detected =\n          URI (uniform resource indicator)\n        Viewing specific name types =\n          URI = http://pki.ssh.com:8090/ocsp-1/\n  Fingerprints =\n    MD5 = c7:af:e5:3d:f6:ea:ce:da:07:93:d0:06:8d:c0:0a:f8\n    SHA-1 =\n    27:d7:19:47:7c:08:3e:1a:27:4b:68:8e:18:83:e8:f9:23:e8:29:85\n</pre></div></div><div class=\"navfooter\"><table width=\"100%\" summary=\"Navigation footer\"><hr><tr><td width=\"40%\" align=\"left\"></td><th width=\"20%\" align=\"center\"></th><td width=\"40%\" align=\"right\"><a accesskey=\"h\" href=\"index.html\"><img src=\"images/home.gif\" alt=\"Home\"></a><a href=\"ix01.html\"><img src=\"images/index.gif\"></a> <a accesskey=\"p\" href=\"ssh-scepclient-g3.html\"><img src=\"images/prev.gif\" alt=\"Prev\"></a> <a accesskey=\"u\" href=\"client-commandlinetools.html\"><img src=\"images/up.gif\" alt=\"Up\"></a> <a accesskey=\"n\" href=\"ssh-ekview-g3.html\"><img src=\"images/next.gif\" alt=\"Next\"></a>  </td></tr></table></div><div class=\"copyrightfooter\" align=\"center\"><p class=\"footer\">\n  Copyright <img src=\"images/copyright.gif\"> 2020 SSH Communications Security Corporation<br>\n  This software is protected by international copyright laws. All rights reserved.<br><a href=\"http://www.ssh.com/about/contact\">Contact Information</a></p></div></div>","head":"<head><meta http-equiv=\"Content-Type\" content=\"text/html; charset=UTF-8\"><title>ssh-certview-g3</title><link rel=\"stylesheet\" type=\"text/css\" href=\"sshx.css\"><meta name=\"generator\" content=\"DocBook XSL Stylesheets V1.79.1\"><link rel=\"home\" href=\"index.html\" title=\"Tectia® Client 6.4\"><link rel=\"up\" href=\"client-commandlinetools.html\" title=\"Appendix C Command-Line Tools and Man Pages\"><link rel=\"prev\" href=\"ssh-scepclient-g3.html\" title=\"ssh-scepclient-g3\"><link rel=\"next\" href=\"ssh-ekview-g3.html\" title=\"ssh-ekview-g3\"></head>","url":"/manuals/client-user/64/ssh-certview-g3.html"}}}