ntokenenroll

ntokenenroll [OPTIONS]

Enrolls a locally attached nToken with an nShield HSM. ntokenenroll installs the Electronic Serial Number (ESN) of the nToken within the client configuration file and displays the module’s ESN and the hash of the key to be used in nToken authentication. The network-attached HSM will need to be able to connect to TCP port 9004 on this host for this to work. For more information, see Configuring the unit to use the client.

Option Description

-a, --add

Enrolls with the remote module (default)

-c, --configfile=FILENAME

Name of the configuration file to read and write.

-H, --hashes

Displays key hashes for all local modules.

-q, --quiet

Quiet operation.

-r, --remove

De-enrolls from the remote module.

-t, --token=MODULE

Selects the local module to use.

Option to address HSMs

-m, --module=MODULE

Specifies the number of the remote module to enroll with or de-enroll from.

Help options

-h, --help

Displays help for ntokenenroll.

-u, --usage

Displays a brief usage summary for ntokenenroll.

-v, --version

Displays the version number of the Security World Software that deploys ntokenenroll.