java keystore tool
Date : March 29 2020, 07:55 AM
should help you out The Java keytool.exe utility is used to maintain digital certificates and their associated keys in a key-store file. It can also be used to generate key-pairs, signing requests and for other security-data oriented functions.
|
Is there a command line tool to generate symmetric keys in a Java keystore?
Date : March 29 2020, 07:55 AM
I wish this help you keytool is able to generate a secret key since Java 6 with the -genseckey command. Here is an excerpt of the Java 6 keytool documentation: -genseckey {-alias alias} {-keyalg keyalg}
{-keysize keysize} [-keypass keypass]
{-storetype storetype} {-keystore keystore}
[-storepass storepass]
{-providerClass provider_class_name {-providerArg provider_arg}}
{-v} {-protected} {-Jjavaoption}
keytool -genseckey -alias mykey -keyalg AES -keysize 128 \
-storetype jceks -keystore mykeystore.jks
% keytool -help
[...]
-genkeypair [-v] [-protected]
[-alias <alias>]
[-keyalg <keyalg>] [-keysize <taille_clé>]
[-sigalg <sigalg>] [-dname <nomd>]
[-validity <joursVal>] [-keypass <mot_passe_clé>]
[-keystore <keystore>] [-storepass <mot_passe_store>]
[-storetype <storetype>] [-providername <name>]
[-providerclass <provider_class_name> [-providerarg <arg>]] ...
[-providerpath <pathlist>]
-genkeypair [-v] [-protected]
[-alias <alias>] [-keypass <keypass>]
[-keyalg <keyalg>] [-keysize <taille_clé>]
[-keystore <keystore>] [-storepass <mot_passe_store>]
[-storetype <storetype>] [-providername <name>]
[-providerclass <provider_class_name> [-providerarg <arg>]] ...
[-providerpath <pathlist>]
% java -version
java version "1.7.0_03"
Java(TM) SE Runtime Environment (build 1.7.0_03-b04)
Java HotSpot(TM) Server VM (build 22.1-b02, mixed mode)
% keytool -help
[...]
-genkeypair Generates a key pair
-genseckey Generates a secret key
[...]
|
How to automate Keystore generation using the java keystore tool? w/o user interaction
Tag : java , By : Scott Everts
Date : March 29 2020, 07:55 AM
wish help you to fix your issue I am trying to automate keystore generation using the Java keystore tool. The command I am using is : , Try this: keytool -genkey -noprompt \
-alias alias1 \
-dname "CN=mqttserver.ibm.com, OU=ID, O=IBM, L=Hursley, S=Hants, C=GB" \
-keystore keystore \
-storepass password \
-keypass password
|
pkcs11-tool generated keys in java are not getting loaded into pkcs11 keystore
Tag : java , By : meodudang
Date : March 29 2020, 07:55 AM
wish helps you Keytool automatically generates a self-signed certificate when it generates a key entry, whereas PKCS#11 allows to create a key pair without a corresponding certificate. The Java keystore API simply ignores key pair entries without a certificate. That's why keytool -list ... does not show the entry when it was created with pkcs11-tool. If you take a look at the Oracle PKCS#11 guide and especially the restrictions, it says:
|
What algorithm does java.security.KeyStore use to encrypt the privateKey in KeyStore.setKeyEntry() and KeyStore.store()?
Date : March 29 2020, 07:55 AM
|