strongimcv_pki—verify (1) Linux Manual Page
pki –verify – Verify a certificate using a CA certificate
Synopsis
[ –in file ] [ –cacert file ] [ –debug level ] [ –online ] –options~file -h | –help
Description
This sub-command of pki(1) verifies a certificate using an optional CA certificate.
Options
-h, –help- Print usage information with a summary of the available options.
-v, –debuglevel- Set debug level, default: 1.
-+, –optionsfile- Read command line options from file.
-i, –infile- X.509 certificate to verify. If not given it is read from STDIN.
-c, –cacertfile- CA certificate to use for trustchain verification. If not given the certificate is assumed to be self-signed.
-o, –online- Enable online CRL/OCSP revocation checking.
Exit Status
The exit status is 0 if the certificate was verified successfully, 1 if the certificate is untrusted, 2 if the certificate’s lifetimes are invalid, and 3 if the certificate was verified successfully but the online revocation check indicated that it has been revoked.
See Also
pki(1)
