I have key3.db/cert7.db key pair files holding a valid certificate
signed by Verisign. Also have the PEM format for the certificate emailed
by Verisign. I originally requested and installed the certificate using
iPlanet Console 5.x / LDAP 5. The certificate works with Enterprise
Server, Console and LDAP servers. But will not work with iDAR, as iDAR
has non-standard server SSL configuration. iDAR requires PEM files
holding Certificate and Private Keys - not the key3.db/cert7.db files.
Does anyone know how to extract the private key to a PEM file, so I can
transfer it to iDAR? Looked at using keyutil from iPlanet, but it does
not appear to have export capability for private key. Looked at Sun's
keytool, but it requires keystore database format.
kb