Testing the signing settings

Run the keytool -list command to test:

  • The configuration file.

  • The access to the Virtual Token in Code Signing as a Service.

For example:

$ keytool -list -v -keystore NONE -storetype PKCS11 -providerClass sun.security.pkcs11.SunPKCS11 -providerArg csaas.cfg
Enter keystore password:
 
Keystore type: PKCS11
Keystore provider: SunPKCS11-Entrust-CSaaS-PKCS11
Your keystore contains 1 entry
Alias name: csaasdemo
Entry type: PrivateKeyEntry
Certificate chain length: 3
Certificate[1]:
Owner: CN=Entrust Limited, SERIALNUMBER=1000492879, OID.2.5.4.15=Private Organization, O=Entrust Limited, OID.1.3.6.1.4.1.311.60.2.1.2=Ontario, OID.1.3.6.1.4.1.311.60.2.1.3=CA, L=Ottawa, ST=Ontario, C=CA
Issuer: CN=Entrust Extended Validation Code Signing CA - EVCS2, O="Entrust, Inc.", C=US
Serial number: 60f0b0************************2c457fadb