oroc update keygen
Generate an Ed25519 keypair for signing update manifests.
Usage#
oroc update keygen [options]
Options#
| Option | Description |
|---|---|
--out=<path> |
write keypair JSON to a file instead of stdout |
--key-id=<id> |
optional key identifier to embed in the keypair (default: pk-1) |
--log-file=<path> |
mirror logs to a JSON file |
Examples#
oroc update keygen > key.json
# generate a default keypair and save it to key.json
oroc update keygen --key-id pk-prod --out prod-key.json
# generate a named keypair for production use
Considerations#
- The generated JSON includes
keyId,publicKey, andprivateKeyfields as hex. - Treat the private key as secret material.
See also#
Source repository · Edit this page · View Markdown