TrustedCertPKCS11Params Property
Specifies a PKCS11 Certificate that can be used to validate the trust of other certificates.
Data Type
StringDefault Value
""Remarks
If a Certificate should be specified as a TrustedCert and is in PKCS11 format, this property should be set instead of TrustedCert. Please see the TrustedCert page for details on when Certificates should be specified as trusted.
PCKS11 Certificates are specified via the following list of parameters, in name=value syntax:
dllpath | Path to PKCS11 driver DLL (required) | Example: DllPath="C:\Program Files\Token\cp11.dll" |
slot | Slot number. If not specified, the first slot with the inserted token is considered. | Example: Slot="5" |
pin | Token PIN. | Example: Pin="12345" |
issuer | Specifies a subset of fields of the certificate issuer in DN (distinguished name) format. | Example: issuer="/CN=John Johnson/O=Big Company, Inc/E=Johnson@b.com" |
subject | Specifies a subset of fields of the certificate subject in DN (distinguished name) format. | Example: subject="/CN=John Johnson/O=Big Company, Inc/E=Johnson@b.com" |
serial | Certificate serial number in base16 format. | Example: serial="00FFA0" |
fingerprint | SHA1 fingerprint of the certificate in base16 format. | Example: fingerprint="00112233445566778899AABBCCDDEEFF00112233" |
keyid | The value of the subject key identifier extension of the certificate in base16 format. | Example: keyid="112233445566" |