summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorNikos Mavrogiannopoulos <nmav@redhat.com>2017-08-25 16:33:35 +0200
committerNikos Mavrogiannopoulos <nmav@redhat.com>2017-08-25 16:33:35 +0200
commit65c147cd87f61c0972d0acb561c9379e67d3e55c (patch)
tree4ef460dd09ff3f929bbcaaffb71244b36c8ab976
parent85d6eadf93238f4f72653dc95f88be9eff7d5744 (diff)
downloadgnutls-65c147cd87f61c0972d0acb561c9379e67d3e55c.tar.gz
p11tool: explicitly mark generated keys as sensitive
Signed-off-by: Nikos Mavrogiannopoulos <nmav@redhat.com>
-rw-r--r--src/pkcs11.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/pkcs11.c b/src/pkcs11.c
index 8e247b35b6..8cb9101d4e 100644
--- a/src/pkcs11.c
+++ b/src/pkcs11.c
@@ -646,7 +646,7 @@ pkcs11_generate(FILE * outfile, const char *url, gnutls_pk_algorithm_t pk,
ret =
gnutls_pkcs11_privkey_generate3(url, pk, bits, label, &cid,
GNUTLS_X509_FMT_PEM, &pubkey,
- flags);
+ flags|GNUTLS_PKCS11_OBJ_FLAG_MARK_SENSITIVE);
if (ret < 0) {
fprintf(stderr, "Error in %s:%d: %s\n", __func__, __LINE__,
gnutls_strerror(ret));