Interface KeyValue

All Superinterfaces:

public interface KeyValue extends XMLStructure
A representation of the XML KeyValue element as defined in the W3C Recommendation for XML-Signature Syntax and Processing. A KeyValue object contains a single public key that may be useful in validating the signature. The XML schema definition is defined as:
    <element name="KeyValue" type="ds:KeyValueType"/>
    <complexType name="KeyValueType" mixed="true">
        <element ref="ds:DSAKeyValue"/>
        <element ref="ds:RSAKeyValue"/>
        <!-- <element ref="dsig11:ECKeyValue"/> -->
        <!-- ECC keys (XMLDsig 1.1) will use the any element -->
        <any namespace="##other" processContents="lax"/>

    <element name="DSAKeyValue" type="ds:DSAKeyValueType"/>
    <complexType name="DSAKeyValueType">
        <sequence minOccurs="0">
          <element name="P" type="ds:CryptoBinary"/>
          <element name="Q" type="ds:CryptoBinary"/>
        <element name="G" type="ds:CryptoBinary" minOccurs="0"/>
        <element name="Y" type="ds:CryptoBinary"/>
        <element name="J" type="ds:CryptoBinary" minOccurs="0"/>
        <sequence minOccurs="0">
          <element name="Seed" type="ds:CryptoBinary"/>
          <element name="PgenCounter" type="ds:CryptoBinary"/>

    <element name="RSAKeyValue" type="ds:RSAKeyValueType"/>
    <complexType name="RSAKeyValueType">
        <element name="Modulus" type="ds:CryptoBinary"/>
        <element name="Exponent" type="ds:CryptoBinary"/>

    <complexType name="ECKeyValueType">
          <element name="ECParameters" type="dsig11:ECParametersType" />
          <element name="NamedCurve" type="dsig11:NamedCurveType" />
        <element name="PublicKey" type="dsig11:ECPointType" />
      <attribute name="Id" type="ID" use="optional" />

    <complexType name="NamedCurveType">
      <attribute name="URI" type="anyURI" use="required" />

    <simpleType name="ECPointType">
      <restriction base="ds:CryptoBinary" />
See section of the W3C Recommendation for the definition of ECParametersType.

A KeyValue instance may be created by invoking the newKeyValue method of the KeyInfoFactory class, and passing it a PublicKey representing the value of the public key. Here is an example of creating a KeyValue from a DSAPublicKey of a Certificate stored in a KeyStore:

 KeyStore keyStore = KeyStore.getInstance(KeyStore.getDefaultType());
 PublicKey dsaPublicKey = keyStore.getCertificate("myDSASigningCert").getPublicKey();
 KeyInfoFactory factory = KeyInfoFactory.getInstance("DOM");
 KeyValue keyValue = factory.newKeyValue(dsaPublicKey);
This class returns the DSAKeyValue and RSAKeyValue elements as objects of type DSAPublicKey and RSAPublicKey, respectively. Note that not all of the fields in the schema are accessible as parameters of these types.
See Also:
  • Field Summary Link icon

    Modifier and Type
    static final String
    URI identifying the DSA KeyValue KeyInfo type:
    static final String
    URI identifying the EC KeyValue KeyInfo type:
    static final String
    URI identifying the RSA KeyValue KeyInfo type:
  • Method Summary Link icon

    Modifier and Type
    Returns the public key of this KeyValue.

    Methods declared in interface javax.xml.crypto.XMLStructure Link icon

  • Field Details Link icon

    • DSA_TYPE Link icon

      static final String DSA_TYPE
      URI identifying the DSA KeyValue KeyInfo type: This can be specified as the value of the type parameter of the RetrievalMethod class to describe a remote DSAKeyValue structure.
      See Also:
    • RSA_TYPE Link icon

      static final String RSA_TYPE
      URI identifying the RSA KeyValue KeyInfo type: This can be specified as the value of the type parameter of the RetrievalMethod class to describe a remote RSAKeyValue structure.
      See Also:
    • EC_TYPE Link icon

      static final String EC_TYPE
      URI identifying the EC KeyValue KeyInfo type: This can be specified as the value of the type parameter of the RetrievalMethod class to describe a remote ECKeyValue structure.
      See Also:
  • Method Details Link icon

    • getPublicKey Link icon

      PublicKey getPublicKey() throws KeyException
      Returns the public key of this KeyValue.
      the public key of this KeyValue
      KeyException - if this KeyValue cannot be converted to a PublicKey