.ie \n(.g .ds Aq \(aq .el .ds Aq ' .TH nethsm-config-get-tls-certificate 1 "nethsm-config-get-tls-certificate " .SH NAME nethsm\-config\-get\-tls\-certificate \- Get the certificate for the TLS connection .SH SYNOPSIS \fBnethsm config get tls\-certificate\fR [\fB\-f\fR|\fB\-\-force\fR] [\fB\-o\fR|\fB\-\-output\fR] [\fB\-a\fR|\fB\-\-auth\-passphrase\-file\fR] [\fB\-c\fR|\fB\-\-config\fR] [\fB\-l\fR|\fB\-\-label\fR] [\fB\-u\fR|\fB\-\-user\fR] [\fB\-h\fR|\fB\-\-help\fR] .SH DESCRIPTION Get the certificate for the TLS connection .PP The X.509 certificate is returned in Privacy\-enhanced Electronic Mail (PEM) format. Unless a specific output file is chosen, the certificate is returned on stdout. .PP Requires authentication of a system\-wide user in the "Administrator" role. .SH OPTIONS .TP \fB\-f\fR, \fB\-\-force\fR Write to output file even if it exists already .RS May also be specified with the \fBNETHSM_FORCE\fR environment variable. .RE .TP \fB\-o\fR, \fB\-\-output\fR \fI\fR The optional path to a specific file that the certificate is written to .RS May also be specified with the \fBNETHSM_CONFIG_TLS_CERT_OUTPUT_FILE\fR environment variable. .RE .TP \fB\-a\fR, \fB\-\-auth\-passphrase\-file\fR \fI\fR The path to a file containing a passphrase for authentication The passphrase provided in the file must be the one for the user chosen for the command. This option can be provided multiple times, which is needed for commands that require multiple roles at once. With multiple passphrase files ordering matters, as the files are assigned to the respective user provided by the "\-\-user" option. .RS May also be specified with the \fBNETHSM_AUTH_PASSPHRASE_FILE\fR environment variable. .RE .TP \fB\-c\fR, \fB\-\-config\fR \fI\fR The path to a custom configuration file If specified, the custom configuration file is used instead of the default configuration file location. .RS May also be specified with the \fBNETHSM_CONFIG\fR environment variable. .RE .TP \fB\-l\fR, \fB\-\-label\fR \fI