$manlookup

openssl-nseq

(1ssl)

create or examine a Netscape certificate sequence

User commands8 optionsopenssl 3.5.6-1~deb13u2
openssl nseq [-help] [-in filename] [-out filename] [-toseq] [-provider name] [-provider-path path] [-provparam [name:]key=value] [-propquery propq]

Options

8
-help

Print out a usage message.

-infilename

This specifies the input filename to read or standard input if this option is not specified.

-outfilename

Specifies the output filename or standard output by default.

-toseq

Normally a Netscape certificate sequence will be input and the output is the certificates contained in it. With the -toseq option the situation is reversed: a Netscape certificate sequence is created from a file of certificates.

-providername

-provider-pathpath

-provparam[name:]key=value

-propquerypropq

See "Provider Options" in openssl(1), provider(7), and property(7).

DESCRIPTION

This command takes a file containing a Netscape certificate sequence and prints out the certificates contained in it or takes a file of certificates and converts it into a Netscape certificate sequence.

A Netscape certificate sequence is an old Netscape-specific format that can be sometimes be sent to browsers as an alternative to the standard PKCS#7 format when several certificates are sent to the browser, for example during certificate enrollment. It was also used by Netscape certificate server.

EXAMPLES

Output the certificates in a Netscape certificate sequence

 openssl nseq -in nseq.pem -out certs.pem

Create a Netscape certificate sequence

 openssl nseq -in certs.pem -toseq -out nseq.pem