-
Create a self-signed certificate using the command below.
|
|
|
|
The key and certificate can be generated using other utilities as well.
-
Verify the private key and certificate file are generated.
|
|
|
|
Certificate and private key created
-
Generate the public key from private key.
|
|
|
|
Public key created form private key
-
Store the public key in OpenStack Barbican.
|
|
|
|
Public key stored in Barbican
-
You can also verify the encryption operation logging in PKCS#11 log file
cs_pkcs11_R2.logduring public secret generation as shown below.
PKCS#11 logs showing secret encryption
-
Get value of the public key.
|
|
|
|
Get value of the public key from Barbican
-
Store private key in OpenStack Barbican.
|
|
|
|
Private key stored in Barbican
-
Get value of the private key.
|
|
|
|
Get value of the public key from Barbican
-
Store the certificate in OpenStack Barbican.
|
|
|
|
Certificate stored in Barbican
-
Get value of the certificate from OpenStack Barbican.
|
|
|
|
Get value of certificate from Barbican
-
List all secrets.
|
|
|
|
Listing all secrets