summaryrefslogtreecommitdiffstats
path: root/doc/man/pkcs11-destroy.8in
blob: be5941edc1e525b19074e4cfa513a2f8a6c4d674 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
.\" Man page generated from reStructuredText.
.
.
.nr rst2man-indent-level 0
.
.de1 rstReportMargin
\\$1 \\n[an-margin]
level \\n[rst2man-indent-level]
level margin: \\n[rst2man-indent\\n[rst2man-indent-level]]
-
\\n[rst2man-indent0]
\\n[rst2man-indent1]
\\n[rst2man-indent2]
..
.de1 INDENT
.\" .rstReportMargin pre:
. RS \\$1
. nr rst2man-indent\\n[rst2man-indent-level] \\n[an-margin]
. nr rst2man-indent-level +1
.\" .rstReportMargin post:
..
.de UNINDENT
. RE
.\" indent \\n[an-margin]
.\" old: \\n[rst2man-indent\\n[rst2man-indent-level]]
.nr rst2man-indent-level -1
.\" new: \\n[rst2man-indent\\n[rst2man-indent-level]]
.in \\n[rst2man-indent\\n[rst2man-indent-level]]u
..
.TH "PKCS11-DESTROY" "8" "@RELEASE_DATE@" "@BIND9_VERSION@" "BIND 9"
.SH NAME
pkcs11-destroy \- destroy PKCS#11 objects
pkcs11\-destroy \- destroy PKCS#11 objects
.sp
\fBpkcs11\-destroy\fP [\fB\-m\fP module] [\fB\-s\fP slot] [\fB\-i\fP ID] [\fB\-l\fP label] [\fB\-p\fP PIN] [\fB\-w\fP seconds]
.sp
\fBpkcs11\-destroy\fP destroys keys stored in a PKCS#11 device, identified
by their \fBID\fP or \fBlabel\fP\&.
.sp
Matching keys are displayed before being destroyed. By default, there is
a five\-second delay to allow the user to interrupt the process before
the destruction takes place.
.INDENT 0.0
.TP
.B \fB\-m module\fP
This option specifies the PKCS#11 provider module. This must be the full path to a
shared library object implementing the PKCS#11 API for the device.
.TP
.B \fB\-s slot\fP
This option opens the session with the given PKCS#11 slot. The default is slot 0.
.TP
.B \fB\-i ID\fP
This option destroys keys with the given object ID.
.TP
.B \fB\-l label\fP
This option destroys keys with the given label.
.TP
.B \fB\-p PIN\fP
This option specifies the \fBPIN\fP for the device. If no \fBPIN\fP is provided on the command
line, \fBpkcs11\-destroy\fP prompts for it.
.TP
.B \fB\-w seconds\fP
This option specifies how long, in seconds, to pause before carrying out key destruction. The
default is 5 seconds. If set to \fB0\fP, destruction is
immediate.
.UNINDENT
.sp
\fBpkcs11\-keygen(8)\fP, \fBpkcs11\-list(8)\fP, \fBpkcs11\-tokens(8)\fP
.SH AUTHOR
Internet Systems Consortium
.SH COPYRIGHT
2023, Internet Systems Consortium
.\" Generated by docutils manpage writer.
.