openssl x509 -noout -fingerprint -sha1 -inform pem -in <path to cert>
openssl x509 -noout -fingerprint -sha1 -inform pem -in /etc/cb/certs/cb-server.crt