Skip to content

Support for specifying trust anchor in properties file

Choose a tag to compare

@bob-fontana bob-fontana released this 20 Feb 15:11

Path validation done in PKIX.6 now supports PKI other than FPKI and ICAM. Use defaultAlias in pdval.properties to specify the alias to use, and import the trust anchor to cacerts.jks. Validator will use the default alias to look for the named certificate in the keystore and attempt to build a certificate chain to the end-entity certificates on the card under test.

fips201-card-conformance-tool-1.0.7-20210220075731.zip

SHA256: 248f50cd2c6563aed6834ad0370d5c409e9e36557be371da5924067823ddd342