Class X509ExtendedKeyManager
java.lang.Object
javax.net.ssl.X509ExtendedKeyManager
- All Implemented Interfaces:
KeyManager, X509KeyManager
Abstract class that provides for extension of the X509KeyManager
interface.
Methods in this class should be overridden to provide actual implementations.
- Since:
- 1.5
-
Constructor Summary
ConstructorsModifierConstructorDescriptionprotectedConstructor used by subclasses only. -
Method Summary
Modifier and TypeMethodDescriptionchooseEngineClientAlias(String[] keyType, Principal[] issuers, SSLEngine engine) Choose an alias to authenticate the client side of anSSLEngineconnection given the public key type and the list of certificate issuer authorities recognized by the peer (if any).chooseEngineServerAlias(String keyType, Principal[] issuers, SSLEngine engine) Choose an alias to authenticate the server side of anSSLEngineconnection given the public key type and the list of certificate issuer authorities recognized by the peer (if any).Methods declared in class Object
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, waitModifier and TypeMethodDescriptionprotected Objectclone()Creates and returns a copy of this object.booleanIndicates whether some other object is "equal to" this one.protected voidfinalize()Deprecated, for removal: This API element is subject to removal in a future version.Finalization is deprecated and subject to removal in a future release.final Class<?> getClass()Returns the runtime class of thisObject.inthashCode()Returns a hash code value for this object.final voidnotify()Wakes up a single thread that is waiting on this object's monitor.final voidWakes up all threads that are waiting on this object's monitor.toString()Returns a string representation of the object.final voidwait()Causes the current thread to wait until it is awakened, typically by being notified or interrupted.final voidwait(long timeoutMillis) Causes the current thread to wait until it is awakened, typically by being notified or interrupted, or until a certain amount of real time has elapsed.final voidwait(long timeoutMillis, int nanos) Causes the current thread to wait until it is awakened, typically by being notified or interrupted, or until a certain amount of real time has elapsed.Methods declared in interface X509KeyManager
chooseClientAlias, chooseServerAlias, getCertificateChain, getClientAliases, getPrivateKey, getServerAliasesModifier and TypeMethodDescriptionchooseClientAlias(String[] keyType, Principal[] issuers, Socket socket) Choose an alias to authenticate the client side of a secure socket given the public key type and the list of certificate issuer authorities recognized by the peer (if any).chooseServerAlias(String keyType, Principal[] issuers, Socket socket) Choose an alias to authenticate the server side of a secure socket given the public key type and the list of certificate issuer authorities recognized by the peer (if any).getCertificateChain(String alias) Returns the certificate chain associated with the given alias.String[]getClientAliases(String keyType, Principal[] issuers) Get the matching aliases for authenticating the client side of a secure socket given the public key type and the list of certificate issuer authorities recognized by the peer (if any).getPrivateKey(String alias) Returns the key associated with the given alias.String[]getServerAliases(String keyType, Principal[] issuers) Get the matching aliases for authenticating the server side of a secure socket given the public key type and the list of certificate issuer authorities recognized by the peer (if any).
-
Constructor Details
-
X509ExtendedKeyManager
protected X509ExtendedKeyManager()Constructor used by subclasses only.
-
-
Method Details
-
chooseEngineClientAlias
Choose an alias to authenticate the client side of anSSLEngineconnection given the public key type and the list of certificate issuer authorities recognized by the peer (if any).The default implementation returns null.
- Parameters:
keyType- the key algorithm type name(s), ordered with the most-preferred key type first.issuers- the list of acceptable CA issuer subject names or null if it does not matter which issuers are used.engine- theSSLEngineto be used for this connection. This parameter can be null, which indicates that implementations of this interface are free to select an alias applicable to any engine.- Returns:
- the alias name for the desired key, or null if there are no matches.
-
chooseEngineServerAlias
Choose an alias to authenticate the server side of anSSLEngineconnection given the public key type and the list of certificate issuer authorities recognized by the peer (if any).The default implementation returns null.
- Parameters:
keyType- the key algorithm type name.issuers- the list of acceptable CA issuer subject names or null if it does not matter which issuers are used.engine- theSSLEngineto be used for this connection. This parameter can be null, which indicates that implementations of this interface are free to select an alias applicable to any engine.- Returns:
- the alias name for the desired key, or null if there are no matches.
-