Skip to main content

How to check SSL certificate expiration date for certificate in wallet using orapki

How to check SSL certificate expiration date for the certificate in wallet using orapki


In this post I am going to share how to find the certificate expiry information from an oracle wallet.


Locate the location where the wallet files are present

cd $INST_TOP/certs/Apache
ls

cwallet.sso 
ewallet.p12
 

Find DN

applmgr@funebs122:/u01/oracle/apps/inst/certs/Apache> orapki wallet display -wallet ewallet.p12
Oracle PKI Tool : Version 12.1.0.2
Copyright (c) 2004, 2014, Oracle and/or its affiliates. All rights reserved.

Enter wallet password:
Requested Certificates:
User Certificates:
Trusted Certificates:
Subject: CN=xyz EV RSA CA 2018,OU=www.funebs122.lab,O=xxx Inc,C=US <====dn

Export ewallet.p12 to the certificate

applmgr@funebs122:/u01/oracle/apps/inst/certs/Apache> orapki wallet export -wallet ewallet.p12 -dn "CN=xyz EV RSA CA 2018,OU=www.funebs122.lab,O=xxx Inc,C=US" -cert certificate_expiry
Oracle PKI Tool : Version 12.1.0.2
Copyright (c) 2004, 2014, Oracle and/or its affiliates. All rights reserved.

Enter wallet password:

applmgr@funebs122:/u01/oracle/apps/inst/certs/Apache> ls
certificate_expiry <===exported certificate

Check certificate validity


applmgr@funebs122:/u01/oracle/apps/inst/certs/Apache> orapki cert display -cert /u01/oracle/apps/inst/certs/Apache/certificate_expiry -summary
Oracle PKI Tool : Version 12.1.0.2
Copyright (c) 2004, 2014, Oracle and/or its affiliates. All rights reserved.

Subject: CN=xyz EV RSA CA 2018,OU=www.funebs122.lab,O=xxx Inc,C=US
Issuer: CN=xyz EV RSA CA 2018,OU=www.funebs122.lab,O=xxx Inc,C=US
Valid Until: Sat Nov 06 15:22:57 AST 2023 <=== Certificate validity


Please read article on more website security checks How to Conduct a Website Security Check



If you like please follow and comment

Comments

Popular posts from this blog

WebLogic migration to OCI using WDT tool

WebLogic migration to OCI using WDT tool Oracle WebLogic Deploy Tool (WDT) is an open-source project designed to simplify and streamline the management of Oracle WebLogic Server domains. With WDT, you can export configuration and application files from one WebLogic Server domain and import them into another, making it a highly effective tool for tasks like migrating on-premises WebLogic configurations to Oracle Cloud. This blog outlines a detailed step-by-step process for using WDT to migrate WebLogic resources and configurations. Supported WLS versions Why Use WDT for Migration? When moving Oracle WebLogic resources from an on-premises environment to Oracle Cloud (or another WebLogic Server), WDT provides an efficient and reliable approach to: Discover and export domain configurations and application binaries. Create reusable models and archives for deployment in a target domain. Key Pre-Requisites Source System: An Oracle WebLogic Server with pre-configured resources such as: Applica...

Rename a PDB in Oracle Database Multitenant Architecture in TDE and Non TDE Environment

Rename a PDB in Oracle Database Multitenant Architecture I am sharing a step-by-step guide to help you rename a PDB. This approach uses SQL commands. Without TDE or encryption Wallet Initial Check Check the Current Database Name and Open Mode: SQL > SELECT NAME, OPEN_MODE FROM V$DATABASE; NAME OPEN_MODE --------- -------------------- BEECDB READ WRITE List Current PDBs: SQL > SHOW PDBS; CON_ID CON_NAME OPEN MODE RESTRICTED ---------- ------------------------------ ---------- ---------- 2 PDB$SEED READ ONLY NO 3 FUAT READ WRITE NO We need to RENAME FUAT to BEE  Steps to Rename the PDB Step 1: Export ORACLE_SID Set the Oracle SID to the Container Database (CDB): export ORACLE_SID=BEECDB Step 2: Verify Target PDB Name Availability If the target PDB name is different from the current PDB name, ensure no service exists with the target PDB name. Run SQL to Check Exi...

How to make flash work on IE or Edge with IE Compatibility

How to make flash work on IE or Edge with IE Compatibility With flash been ended from 1-Jan-2021, many applications using flash have stopped working the way they were built (like OEM, OBIEE, etc). The option you have to upgrade.  This method will give a workaround in IE or Edge in IE compatibility mode without upgrading. 1. Verify you have installed flash.ocx on your desktop. Typically, flash.ocx file is located in C:\Windows\System32\Macromed\Flash or C:\Windows\SysWOW64\Macromed\Flash according to your laptop OS system. 2. Edit mms.cfg from the location as a System Administrator In the case of the 64bit system, it might have mms.cfg under C:\Windows\SysWOW64\Macromed\Flash 3. Add below options into mms.cfg file. Note: AllowListUrlPattern list is an example. The URLs need to be replaced to your hosts those have Flash pages. SilentAutoUpdateEnable=0 AutoUpdateDisable=1 EOLUninstallDisable=1 EnableAllowList=1 AllowListUrlPattern=http://www.google.com/ AllowListUrlPattern=http://goo...