Subject: pktool CLI update (dir option correction) [PSARC/2008/306 FastTrack timeout 05/16/2008] To: PSARC-ext@Sun.Com Cc: kmf-discuss@opensolaris.org Bcc: one-pager-list@sac.sfbay one-pager-log@sac.sfbay sac-bar@sac.sfbay Template Version: @(#)sac_nextcase 1.66 04/17/08 SMI This information is Copyright 2008 Sun Microsystems 1. Introduction 1.1. Project/Component Working Name: pktool CLI update (dir option correction) 1.2. Name of Document Author/Supplier: Author: Wyllys Ingersoll 1.3 Date of This Document: 09 May, 2008 4. Technical Description Proposal: Remove use of "dir" option for file-based keystore operations Submitter & Owner: Wyllys Ingersoll Release Binding: patch Description: pktool(1) currently has some CLI options that are inconsistent with standard Unix CLI usage. Currently, it allows the caller to specify both a filename and a directory using 2 distinct command line arguments (Ex: certfile=filename dir=directory). This is wrong and should be changed by eliminating the use of the "dir" option wherever a standard filename will be sufficient. The documentation (man page) will be updated to indicate the full pathnames are needed if the files being referenced are not in the local directory. Note that there are still cases where a "dir" option is desirable, such as when indicating that you wish to search for all certificates or keys in a particular directory. Also, the "dir" option is still needed for operations involving the NSS based keystores to indicate where the NSS databases are actually located. This fast-track is just to record the fact that we are making a change to the existing CLI for pktool(1). The updated pktool(1) man page is in the case materials directory. 6. Resources and Schedule 6.4. Steering Committee requested information 6.4.1. Consolidation C-team Name: ON 6.5. ARC review type: FastTrack 6.6. ARC Exposure: open