Is there a standard for Java Keystore PKCS#12?









up vote
3
down vote

favorite
1












I am working on a project feature where users can upload their PKCS#12 file to be used as a certificate identity for the service running in the cloud.



Once, I started reading rfc7292 "PKCS #12: Personal Information Exchange Syntax v1.1", I noticed that the standard was more general than the impression I got from working with Java keystores.



For example, Java expects the server certificate to be in the first bag while the standard states no such requirement (also, encrypting the whole content with a password).



Is there a JSR describing the behavior of Java keystore ?










share|improve this question

















  • 1




    I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
    – James K Polk
    Nov 8 at 21:50














up vote
3
down vote

favorite
1












I am working on a project feature where users can upload their PKCS#12 file to be used as a certificate identity for the service running in the cloud.



Once, I started reading rfc7292 "PKCS #12: Personal Information Exchange Syntax v1.1", I noticed that the standard was more general than the impression I got from working with Java keystores.



For example, Java expects the server certificate to be in the first bag while the standard states no such requirement (also, encrypting the whole content with a password).



Is there a JSR describing the behavior of Java keystore ?










share|improve this question

















  • 1




    I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
    – James K Polk
    Nov 8 at 21:50












up vote
3
down vote

favorite
1









up vote
3
down vote

favorite
1






1





I am working on a project feature where users can upload their PKCS#12 file to be used as a certificate identity for the service running in the cloud.



Once, I started reading rfc7292 "PKCS #12: Personal Information Exchange Syntax v1.1", I noticed that the standard was more general than the impression I got from working with Java keystores.



For example, Java expects the server certificate to be in the first bag while the standard states no such requirement (also, encrypting the whole content with a password).



Is there a JSR describing the behavior of Java keystore ?










share|improve this question













I am working on a project feature where users can upload their PKCS#12 file to be used as a certificate identity for the service running in the cloud.



Once, I started reading rfc7292 "PKCS #12: Personal Information Exchange Syntax v1.1", I noticed that the standard was more general than the impression I got from working with Java keystores.



For example, Java expects the server certificate to be in the first bag while the standard states no such requirement (also, encrypting the whole content with a password).



Is there a JSR describing the behavior of Java keystore ?







java cryptography keystore pkcs#12






share|improve this question













share|improve this question











share|improve this question




share|improve this question










asked Nov 8 at 19:54









Bassam

8829




8829







  • 1




    I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
    – James K Polk
    Nov 8 at 21:50












  • 1




    I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
    – James K Polk
    Nov 8 at 21:50







1




1




I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
– James K Polk
Nov 8 at 21:50




I haven't found a JSR for it. Java's PKCS#12 support has been changing since it was first introduced in Java 6. Therefore, what is actually supported may vary depending on exactly which version of Java you are targeting, e.g. JEP 229
– James K Polk
Nov 8 at 21:50

















active

oldest

votes











Your Answer






StackExchange.ifUsing("editor", function ()
StackExchange.using("externalEditor", function ()
StackExchange.using("snippets", function ()
StackExchange.snippets.init();
);
);
, "code-snippets");

StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "1"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);

StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);

else
createEditor();

);

function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);



);













 

draft saved


draft discarded


















StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53215205%2fis-there-a-standard-for-java-keystore-pkcs12%23new-answer', 'question_page');

);

Post as a guest















Required, but never shown






























active

oldest

votes













active

oldest

votes









active

oldest

votes






active

oldest

votes















 

draft saved


draft discarded















































 


draft saved


draft discarded














StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53215205%2fis-there-a-standard-for-java-keystore-pkcs12%23new-answer', 'question_page');

);

Post as a guest















Required, but never shown





















































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown

































Required, but never shown














Required, but never shown












Required, but never shown







Required, but never shown







Popular posts from this blog

𛂒𛀶,𛀽𛀑𛂀𛃧𛂓𛀙𛃆𛃑𛃷𛂟𛁡𛀢𛀟𛁤𛂽𛁕𛁪𛂟𛂯,𛁞𛂧𛀴𛁄𛁠𛁼𛂿𛀤 𛂘,𛁺𛂾𛃭𛃭𛃵𛀺,𛂣𛃍𛂖𛃶 𛀸𛃀𛂖𛁶𛁏𛁚 𛂢𛂞 𛁰𛂆𛀔,𛁸𛀽𛁓𛃋𛂇𛃧𛀧𛃣𛂐𛃇,𛂂𛃻𛃲𛁬𛃞𛀧𛃃𛀅 𛂭𛁠𛁡𛃇𛀷𛃓𛁥,𛁙𛁘𛁞𛃸𛁸𛃣𛁜,𛂛,𛃿,𛁯𛂘𛂌𛃛𛁱𛃌𛂈𛂇 𛁊𛃲,𛀕𛃴𛀜 𛀶𛂆𛀶𛃟𛂉𛀣,𛂐𛁞𛁾 𛁷𛂑𛁳𛂯𛀬𛃅,𛃶𛁼

ữḛḳṊẴ ẋ,Ẩṙ,ỹḛẪẠứụỿṞṦ,Ṉẍừ,ứ Ị,Ḵ,ṏ ṇỪḎḰṰọửḊ ṾḨḮữẑỶṑỗḮṣṉẃ Ữẩụ,ṓ,ḹẕḪḫỞṿḭ ỒṱṨẁṋṜ ḅẈ ṉ ứṀḱṑỒḵ,ḏ,ḊḖỹẊ Ẻḷổ,ṥ ẔḲẪụḣể Ṱ ḭỏựẶ Ồ Ṩ,ẂḿṡḾồ ỗṗṡịṞẤḵṽẃ ṸḒẄẘ,ủẞẵṦṟầṓế

⃀⃉⃄⃅⃍,⃂₼₡₰⃉₡₿₢⃉₣⃄₯⃊₮₼₹₱₦₷⃄₪₼₶₳₫⃍₽ ₫₪₦⃆₠₥⃁₸₴₷⃊₹⃅⃈₰⃁₫ ⃎⃍₩₣₷ ₻₮⃊⃀⃄⃉₯,⃏⃊,₦⃅₪,₼⃀₾₧₷₾ ₻ ₸₡ ₾,₭⃈₴⃋,€⃁,₩ ₺⃌⃍⃁₱⃋⃋₨⃊⃁⃃₼,⃎,₱⃍₲₶₡ ⃍⃅₶₨₭,⃉₭₾₡₻⃀ ₼₹⃅₹,₻₭ ⃌