Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-6407240

No API equivalents for several keytool operations

XMLWordPrintable

    • Icon: Enhancement Enhancement
    • Resolution: Duplicate
    • Icon: P4 P4
    • None
    • 6
    • security-libs

      A DESCRIPTION OF THE REQUEST :
      There are no API equivalents available for several of the command line keytool's operations. These incude :

      keytool -genkey
      keytool -certreq
      keytool -selfcert



      JUSTIFICATION :
      These are fundamental pki operations.

      EXPECTED VERSUS ACTUAL BEHAVIOR :
      EXPECTED -
      Full functionality for generating certificates including certificate signing and handling PKCS#10 CSRs. Lack of this functionality is one of the most common reasons why developers must use BouncyCastle (which is great but shouldn't be standing in for core functionality).

      CUSTOMER SUBMITTED WORKAROUND :
      People are commonly using bouncy castle provider or commercially the IAIK toolkits.

            vinnie Vincent Ryan
            rmandalasunw Ranjith Mandala (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: