PKI --PKCS7(1) strongSwan PKI --PKCS7(1)

pki --pkcs7 - Provides PKCS#7 wrap/unwrap functions

pki --pkcs7 --sign|--verify|--encrypt|--decrypt|--show [--in file] [--cert file] [--key file] [--digest digest] [--rsa-padding padding] [--debug level]
pki --pkcs7 --options file
pki --pkcs7 -h | --help

This sub-command of pki(1) provides functions to wrap/unwrap PKCS#7 containers.

Print usage information with a summary of the available options.
Set debug level, default: 1.
-+, --options file
Read command line options from file.
Create PKCS#7 signed-data.
Verify PKCS#7 signed-data.
Create PKCS#7 enveloped-data.
Decrypt PKCS#7 enveloped-data.
Show information about PKCS#7 container, list certificates.
PKCS#7 input file. If not given the input is read from STDIN.
Private key used for --sign and --decrypt.
Certificate for --sign, --verify and --encrypt. Can be used multiple times.
Digest to use for signature creation. One of md5, sha1, sha224, sha256, sha384, or sha512. The default is determined based on the type and size of the signature key.
Padding to use for RSA signatures. Either pkcs1 or pss, defaults to pkcs1.

pki(1)

2023-03-30 5.9.13