KeyStore.java revision 897538a36c18f4db8f9f68ee566aec0bda842e9f
1adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project/* 2adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Licensed to the Apache Software Foundation (ASF) under one or more 3adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * contributor license agreements. See the NOTICE file distributed with 4adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this work for additional information regarding copyright ownership. 5adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * The ASF licenses this file to You under the Apache License, Version 2.0 6adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * (the "License"); you may not use this file except in compliance with 7adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the License. You may obtain a copy of the License at 8adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * 9adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * http://www.apache.org/licenses/LICENSE-2.0 10adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * 11adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Unless required by applicable law or agreed to in writing, software 12adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * distributed under the License is distributed on an "AS IS" BASIS, 13adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. 14adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * See the License for the specific language governing permissions and 15adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * limitations under the License. 16adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 17adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 18adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectpackage java.security; 19adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 20adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.io.File; 21adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.io.FileInputStream; 22adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.io.IOException; 23adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.io.InputStream; 24adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.io.OutputStream; 25adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.security.cert.Certificate; 26adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.security.cert.CertificateException; 272f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughesimport java.security.cert.X509Certificate; 28adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.util.Arrays; 29adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.util.Date; 30adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport java.util.Enumeration; 31adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 32adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport javax.crypto.SecretKey; 33adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport javax.security.auth.DestroyFailedException; 34adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport javax.security.auth.Destroyable; 35adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport javax.security.auth.callback.CallbackHandler; 36adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 37adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectimport org.apache.harmony.security.fortress.Engine; 38adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 39adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project/** 40adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore} is responsible for maintaining cryptographic keys and their 41adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * owners. 42adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 432f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * The type of the system key store can be changed by setting the {@code 44adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * 'keystore.type'} property in the file named {@code 45adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * JAVA_HOME/lib/security/java.security}. 462f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 47adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see Certificate 48adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see PrivateKey 49adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 50adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Projectpublic class KeyStore { 51adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 52adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store KeyStore SERVICE name 53f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes private static final String SERVICE = "KeyStore"; 54adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 55adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Used to access common engine functionality 56adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private static Engine engine = new Engine(SERVICE); 57adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 58adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store KeyStore property name 59f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes private static final String PROPERTYNAME = "keystore.type"; 60adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 61adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store default KeyStore type 62f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes private static final String DEFAULT_KEYSTORE_TYPE = "jks"; 63adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 64adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store KeyStore state (initialized or not) 65adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private boolean isInit; 66adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 67adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used KeyStoreSpi 68adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final KeyStoreSpi implSpi; 69adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 70adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used provider 71adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final Provider provider; 72adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 73adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used type 74adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final String type; 75adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 76adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 77adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code KeyStore} with the given arguments. 782f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 79adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param keyStoreSpi 80adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the concrete key store. 81adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param provider 82adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the provider. 83adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 84adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the {@code KeyStore} to be constructed. 85adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 86adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project protected KeyStore(KeyStoreSpi keyStoreSpi, Provider provider, String type) { 87adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.type = type; 88adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.provider = provider; 89adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.implSpi = keyStoreSpi; 90adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isInit = false; 91adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 92adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 93adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 94adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Throws the standard "keystore not initialized" exception. 95adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 96adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private static void throwNotInitialized() throws KeyStoreException { 97897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new KeyStoreException("KeyStore was not initialized"); 98adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 99adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 100adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 101adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new instance of {@code KeyStore} with the specified type. 1022f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 103adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 104adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the returned {@code KeyStore}. 105adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new instance of {@code KeyStore} with the specified type. 106adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 107adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an error occurred during the creation of the new {@code 108adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * KeyStore}. 109897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes * @throws NullPointerException if {@code type == null} 110adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see #getDefaultType 111adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 112adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static KeyStore getInstance(String type) throws KeyStoreException { 113adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (type == null) { 114897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException(); 115adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 116adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project synchronized (engine) { 117adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project try { 118adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project engine.getInstance(type, null); 119adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return new KeyStore((KeyStoreSpi) engine.spi, engine.provider, type); 120adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } catch (NoSuchAlgorithmException e) { 121adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw new KeyStoreException(e.getMessage()); 122adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 123adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 124adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 125adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 126adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 127adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new instance of {@code KeyStore} from the specified provider 128adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * with the given type. 1292f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 130adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 131adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the returned {@code KeyStore}. 132adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param provider 133adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * name of the provider of the {@code KeyStore}. 134adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new instance of {@code KeyStore} from the specified provider 135adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * with the given type. 136adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 137adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an error occurred during the creation of the new {@code 138adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * KeyStore}. 139adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchProviderException 140adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the specified provider is not available. 141897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes * @throws IllegalArgumentException if {@code provider == null || provider.isEmpty()} 1422f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 1432f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code type} is {@code null} (instead of 1442f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * NoSuchAlgorithmException) as in 1.4 release 145adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see #getDefaultType 146adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 147adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static KeyStore getInstance(String type, String provider) 148adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException, NoSuchProviderException { 149897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes if (provider == null || provider.isEmpty()) { 150897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException(); 151adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 152adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project Provider impProvider = Security.getProvider(provider); 153adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (impProvider == null) { 154adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw new NoSuchProviderException(provider); 155adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 156adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project try { 157adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return getInstance(type, impProvider); 158adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } catch (Exception e) { 159adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw new KeyStoreException(e.getMessage(), e); 160adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 161adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 162adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 163adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 164adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new instance of {@code KeyStore} from the specified provider 165adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * with the given type. 1662f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 167adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 168adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the returned {@code KeyStore}. 169adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param provider 170adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the provider of the {@code KeyStore}. 171adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new instance of {@code KeyStore} from the specified provider 172adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * with the given type. 173adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 174adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an error occurred during the creation of the new {@code 175adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * KeyStore}. 176adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 177adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code provider} is {@code null} or the empty string. 178897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes * @throws NullPointerException if {@code type == null} (instead of 1792f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * NoSuchAlgorithmException) as in 1.4 release 180adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see #getDefaultType 181adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 182adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static KeyStore getInstance(String type, Provider provider) 183adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 184adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // check parameters 185adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (provider == null) { 186897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException(); 187adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 188adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (type == null) { 189897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException(); 190adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 191adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // return KeyStore instance 192adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project synchronized (engine) { 193adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project try { 194adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project engine.getInstance(type, provider, null); 195adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return new KeyStore((KeyStoreSpi) engine.spi, provider, type); 196adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } catch (Exception e) { 197adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // override exception 198adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw new KeyStoreException(e.getMessage()); 199adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 200adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 201adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 202adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 203adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 204adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the default type for {@code KeyStore} instances. 205adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 206adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * The default is specified in the {@code 'keystore.type'} property in the 207adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * file named {@code JAVA_HOME/lib/security/java.security}. If this property 208adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * is not set, {@code "jks"} will be used. 2092f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 210adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the default type for {@code KeyStore} instances 211adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 212adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static final String getDefaultType() { 213adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project String dt = AccessController.doPrivileged( 214adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project new PrivilegedAction<String>() { 215adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public String run() { 216adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return Security.getProperty(PROPERTYNAME); 217adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 218adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 219adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ); 220adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return (dt == null ? DEFAULT_KEYSTORE_TYPE : dt); 221adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 222adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 223adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 224adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the provider associated with this {@code KeyStore}. 2252f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 226adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the provider associated with this {@code KeyStore}. 227adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 228adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Provider getProvider() { 229adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return provider; 230adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 231adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 232adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 233adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the type of this {@code KeyStore}. 2342f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 235adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the type of this {@code KeyStore}. 236adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 237adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final String getType() { 238adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return type; 239adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 240adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 241adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 242adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the key with the given alias, using the password to recover the 243adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * key from the store. 2442f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 245adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 246adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 247adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param password 248adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the password used to recover the key. 249adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the key with the specified alias, or {@code null} if the 250adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * specified alias is not bound to an entry. 251adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 252adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 253adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 254adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the algorithm for recovering the key is not available. 255adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws UnrecoverableKeyException 256adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the key can not be recovered. 257adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 258adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Key getKey(String alias, char[] password) 259adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException, NoSuchAlgorithmException, 260adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project UnrecoverableKeyException { 261adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 262adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 263adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 264adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 265adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 266adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetKey(alias, password); 267adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 268adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 269adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 270adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the certificate chain for the entry with the given alias. 2712f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 272adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 273adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 274adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the certificate chain for the entry with the given alias, or 275adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code null} if the specified alias is not bound to an entry. 276adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 277adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 278adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 279adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Certificate[] getCertificateChain(String alias) 280adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 281adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 282adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 283adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 284adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 285adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 286adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetCertificateChain(alias); 287adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 288adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 289adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 290adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the trusted certificate for the entry with the given alias. 2912f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 292adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 293adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 294adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the trusted certificate for the entry with the given alias, or 295adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code null} if the specified alias is not bound to an entry. 296adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 297adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 298adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 299adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Certificate getCertificate(String alias) 300adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 301adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 302adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 303adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 304adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 305adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 306adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetCertificate(alias); 307adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 308adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 309adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 310adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the creation date of the entry with the given alias. 3112f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 312adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 313adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 314adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the creation date, or {@code null} if the specified alias is not 315adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * bound to an entry. 316adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 317adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 318adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 319adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Date getCreationDate(String alias) throws KeyStoreException { 320adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 321adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 322adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 323adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 324adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 325adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetCreationDate(alias); 326adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 327adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 328adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 329adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Associates the given alias with the key, password and certificate chain. 330adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 331adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If the specified alias already exists, it will be reassigned. 3322f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 333adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 334adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the key. 335adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param key 336adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the key. 337adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param password 338adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the password. 339adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param chain 340adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the certificate chain. 341adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 342adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 343adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 344adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code key} is a {@code PrivateKey} and {@code chain} does 345adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * not contain any certificates. 3462f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 3472f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 348adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 349adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void setKeyEntry(String alias, Key key, char[] password, 350adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project Certificate[] chain) throws KeyStoreException { 351adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 352adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 353adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 354adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 355adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 356adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 357adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Certificate chain is required for PrivateKey 358897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes if (null != key && key instanceof PrivateKey && (chain == null || chain.length == 0)) { 359897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("Certificate chain is not defined for Private key"); 360adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 361adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineSetKeyEntry(alias, key, password, chain); 362adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 363adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 364adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 365adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Associates the given alias with a key and a certificate chain. 366adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 367adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If the specified alias already exists, it will be reassigned. 368adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 369adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If this {@code KeyStore} is of type {@code "jks"}, {@code key} must be 370adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * encoded conform to the PKS#8 standard as an 371adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@link javax.crypto.EncryptedPrivateKeyInfo}. 3722f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 373adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 374adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the key. 375adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param key 376adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the key in an encoded format. 377adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param chain 378adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the certificate chain. 379adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 3802f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if this {@code KeyStore} is not initialized or if {@code key} 3812f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * is null. 382adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 383adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code key} is a {@code PrivateKey} and {@code chain} 384adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * does. 3852f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 3862f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 387adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 388adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void setKeyEntry(String alias, byte[] key, Certificate[] chain) 389adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 390adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 391adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 392adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 393adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 394adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 395adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineSetKeyEntry(alias, key, chain); 396adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 397adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 398adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 399adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Associates the given alias with a certificate. 400adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 401adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If the specified alias already exists, it will be reassigned. 4022f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 403adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 404adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the certificate. 405adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param cert 406adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the certificate. 407adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 408adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized, or an existing 409adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * alias is not associated to an entry containing a trusted 410adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * certificate, or this method fails for any other reason. 4112f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 4122f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 413adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 414adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void setCertificateEntry(String alias, Certificate cert) 415adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 416adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 417adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 418adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 419adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 420adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 421adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineSetCertificateEntry(alias, cert); 422adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 423adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 424adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 425adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Deletes the entry identified with the given alias from this {@code 426adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * KeyStore}. 4272f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 428adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 429adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 430adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 431adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized, or if the entry 432adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * can not be deleted. 4332f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 4342f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 435adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 436adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void deleteEntry(String alias) throws KeyStoreException { 437adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 4382f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // BEGIN android-changed 439adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 4402f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // END android-changed 4412f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 4422f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes if (alias == null) { 443897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 444adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 445adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineDeleteEntry(alias); 446adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 447adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 448adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 449adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns an {@code Enumeration} over all alias names stored in this 450adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore}. 4512f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 452adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return an {@code Enumeration} over all alias names stored in this 453adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore}. 454adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 455adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 456adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 457adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Enumeration<String> aliases() throws KeyStoreException { 458adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 459adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 460adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 461adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 462adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 463adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineAliases(); 464adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 465adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 466adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 467adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Indicates whether the given alias is present in this {@code KeyStore}. 4682f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 469adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 470adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias of an entry. 471adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return {@code true} if the alias exists, {@code false} otherwise. 472adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 473adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 4742f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 4752f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 476adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 477adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final boolean containsAlias(String alias) throws KeyStoreException { 478adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 479adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 480adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 481adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 482adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 483adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (alias == null) { 484897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 485adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 486adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineContainsAlias(alias); 487adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 488adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 489adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 490adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the number of entries stored in this {@code KeyStore}. 4912f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 492adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the number of entries stored in this {@code KeyStore}. 493adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 494adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 495adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 496adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final int size() throws KeyStoreException { 497adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 498adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 499adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 500adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 501adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 502adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineSize(); 503adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 504adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 505adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 506adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Indicates whether the specified alias is associated with either a 507adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@link PrivateKeyEntry} or a {@link SecretKeyEntry}. 5082f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 509adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 510adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias of an entry. 511adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return {@code true} if the given alias is associated with a key entry. 512adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 513adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 5142f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 5152f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 516adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 517adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final boolean isKeyEntry(String alias) throws KeyStoreException { 518adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 5192f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // BEGIN android-changed 520adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 5212f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // END android-changed 5222f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 5232f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes if (alias == null) { 524897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 525adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 526adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineIsKeyEntry(alias); 527adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 528adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 529adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 530adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Indicates whether the specified alias is associated with a 531adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@link TrustedCertificateEntry}. 5322f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 533adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 534adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias of an entry. 535adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return {@code true} if the given alias is associated with a certificate 536adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * entry. 537adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 538adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 5392f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 5402f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 541adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 542adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final boolean isCertificateEntry(String alias) 543adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 544adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 5452f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // BEGIN android-changed 546adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 5472f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // END android-changed 5482f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 5492f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes if (alias == null) { 550897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 551adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 552adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineIsCertificateEntry(alias); 553adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 554adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 555adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 556adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the alias associated with the first entry whose certificate 557adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * matches the specified certificate. 5582f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 559adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param cert 560adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the certificate to find the associated entry's alias for. 561adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the alias or {@code null} if no entry with the specified 562adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * certificate can be found. 563adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 564adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 565adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 566adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final String getCertificateAlias(Certificate cert) 567adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 568adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 569adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 570adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 571adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 572adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 573adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetCertificateAlias(cert); 574adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 575adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 576adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 577adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Writes this {@code KeyStore} to the specified {@code OutputStream}. The 578adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * data written to the {@code OutputStream} is protected by the specified 579adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * password. 5802f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 581adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param stream 582adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code OutputStream} to write the store's data to. 583adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param password 584adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the password to protect the data. 585adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 586adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 587adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IOException 588adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if a problem occurred while writing to the stream. 589adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 590adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the required algorithm is not available. 591adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws CertificateException 592adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an exception occurred while storing the certificates of 593adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code KeyStore}. 594adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 595adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void store(OutputStream stream, char[] password) 596adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException, IOException, NoSuchAlgorithmException, 597adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project CertificateException { 598adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 599adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 600adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 601adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 602adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 6032f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes 6042f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes //Just delegate stream and password to implSpi 605adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineStore(stream, password); 606adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 607adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 608adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 609adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Stores this {@code KeyStore} using the specified {@code 610adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * LoadStoreParameter}. 6112f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 612adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param param 613adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code LoadStoreParameter} that specifies how to store 614adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code KeyStore}, maybe {@code null}. 615adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 616adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 617adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IOException 618adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if a problem occurred while writing to the stream. 619adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 620adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the required algorithm is not available. 621adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws CertificateException 622adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an exception occurred while storing the certificates of 623adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code KeyStore}. 624adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 625adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the given {@link LoadStoreParameter} is not recognized. 626adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 627adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void store(LoadStoreParameter param) throws KeyStoreException, 628adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project IOException, NoSuchAlgorithmException, CertificateException { 629adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 630adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 631adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 632adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 633adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 634adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineStore(param); 635adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 636adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 637adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 638adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Initializes this {@code KeyStore} from the provided {@code InputStream}. 639adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Pass {@code null} as the {@code stream} argument to initialize an empty 640adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore} or to initialize a {@code KeyStore} which does not rely 641adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * on an {@code InputStream}. This {@code KeyStore} utilizes the given 642adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * password to verify the stored data. 6432f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 644adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param stream 645adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code InputStream} to load this {@code KeyStore}'s data 646adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * from or {@code null}. 647adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param password 648adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the password to verify the stored data, maybe {@code null}. 649adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IOException 650adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if a problem occurred while reading from the stream. 651adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 652adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the required algorithm is not available. 653adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws CertificateException 654adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an exception occurred while loading the certificates of 655adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code KeyStore}. 656adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 657adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void load(InputStream stream, char[] password) 658adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws IOException, NoSuchAlgorithmException, CertificateException { 659adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineLoad(stream, password); 660adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isInit = true; 661adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 662adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 663adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 664adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Loads this {@code KeyStore} using the specified {@code 665adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * LoadStoreParameter}. 6662f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 667adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param param 668adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code LoadStoreParameter} that specifies how to load this 669adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore}, maybe {@code null}. 670adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IOException 671adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if a problem occurred while reading from the stream. 672adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 673adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the required algorithm is not available. 674adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws CertificateException 675adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an exception occurred while loading the certificates of 676adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code KeyStore}. 677adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 678adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the given {@link LoadStoreParameter} is not recognized. 679adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 680adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void load(LoadStoreParameter param) throws IOException, 681adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project NoSuchAlgorithmException, CertificateException { 682adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineLoad(param); 683adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isInit = true; 684adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 685adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 686adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 687adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the {@code Entry} with the given alias, using the specified 688adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code ProtectionParameter}. 6892f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 690adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 691adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias of the requested entry. 692adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param param 693adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code ProtectionParameter} used to protect the requested 694adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * entry, maybe {@code null}. 695adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return he {@code Entry} with the given alias, using the specified 696adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code ProtectionParameter}. 697adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NoSuchAlgorithmException 698adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the required algorithm is not available. 699adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws UnrecoverableEntryException 700adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the entry can not be recovered. 701adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 702adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 7032f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 7042f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null}. 705adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 706adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final Entry getEntry(String alias, ProtectionParameter param) 707adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws NoSuchAlgorithmException, UnrecoverableEntryException, 708adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project KeyStoreException { 709adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (alias == null) { 710897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 711adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 712adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 713adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 714adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 715adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 716adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 717adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineGetEntry(alias, param); 718adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 719adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 720adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 721adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Stores the given {@code Entry} in this {@code KeyStore} and associates 722adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the entry with the given {@code alias}. The entry is protected by the 723adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * specified {@code ProtectionParameter}. 724adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 725adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If the specified alias already exists, it will be reassigned. 7262f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 727adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 728adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 729adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param entry 730adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the entry to store. 731adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param param 732adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code ProtectionParameter} to protect the entry. 733adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 734adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 7352f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @throws NullPointerException 7362f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * if {@code alias} is {@code null} or {@code entry} is {@code 7372f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * null}. 738adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 739adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public final void setEntry(String alias, Entry entry, 740adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ProtectionParameter param) throws KeyStoreException { 741adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 742adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 743adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 744adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 745adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 746adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (alias == null) { 747897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 748adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 749adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (entry == null) { 750897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("entry == null"); 751adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 752adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project implSpi.engineSetEntry(alias, entry, param); 753adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 754adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 755adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 756adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Indicates whether the entry for the given alias is assignable to the 757adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * provided {@code Class}. 7582f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 759adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 760adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 761adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param entryClass 762adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the entry. 763adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return {@code true} if the {@code Entry} for the alias is assignable to 764adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the specified {@code entryClass}. 765adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 766adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if this {@code KeyStore} is not initialized. 767adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 768f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes public final boolean entryInstanceOf(String alias, 769adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project Class<? extends KeyStore.Entry> entryClass) 770adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException { 771adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (alias == null) { 772897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 773adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 774adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (entryClass == null) { 775897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("entryClass == null"); 776adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 777adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 778adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isInit) { 779adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // BEGIN android-changed 780adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throwNotInitialized(); 781adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // END android-changed 782adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 783adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return implSpi.engineEntryInstanceOf(alias, entryClass); 784adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 785adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 786adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 787adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code Builder} is used to construct new instances of {@code KeyStore}. 788adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 789adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public abstract static class Builder { 790adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 791adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code Builder}. 792adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 793adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project protected Builder() { 794adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 795adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 796adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 797adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the {@code KeyStore} created by this {@code Builder}. 7982f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 799adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the {@code KeyStore} created by this {@code Builder}. 800adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 801adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an error occurred during construction. 802adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 803adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public abstract KeyStore getKeyStore() throws KeyStoreException; 804adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 805adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 806adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the {@code ProtectionParameter} to be used when a {@code 807adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Entry} with the specified alias is requested. Before this method is 808adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * invoked, {@link #getKeyStore()} must be called. 8092f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 810adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param alias 811adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the alias for the entry. 812adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the {@code ProtectionParameter} to be used when a {@code 813adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Entry} with the specified alias is requested. 814adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws KeyStoreException 815adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if an error occurred during the lookup for the protection 816adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * parameter. 817adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalStateException 818adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@link #getKeyStore()} is not called prior the 819adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * invocation of this method. 820adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 821adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code alias} is {@code null}. 822adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 823adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public abstract ProtectionParameter getProtectionParameter(String alias) 824adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throws KeyStoreException; 825adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 826adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 827adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new {@code Builder} that holds the given {@code KeyStore} 828adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * and the given {@code ProtectionParameter}. 8292f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 830adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param keyStore 831adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code KeyStore} to be held. 832adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param protectionParameter 833adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code ProtectionParameter} to be held. 834adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new instance of {@code Builder} that holds the specified 835adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore} and the specified {@code 836adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * ProtectionParameter}. 837adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 838adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code keyStore} or {@code protectionParameter} is 839adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code null}. 840adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 841adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the given {@code KeyStore} is not initialized. 842adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 843adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static Builder newInstance(KeyStore keyStore, 844adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ProtectionParameter protectionParameter) { 845adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (keyStore == null) { 846897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("keyStore == null"); 847adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 848adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (protectionParameter == null) { 849897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("protectionParameter == null"); 850adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 851adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!keyStore.isInit) { 852897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("KeyStore was not initialized"); 853adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 854adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return new BuilderImpl(keyStore, protectionParameter, 855adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project null, null, null, null); 856adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 857adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 858adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 859adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new {@code Builder} that creates a new {@code KeyStore} 860adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * based on the provided arguments. 861adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 862adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If {@code provider} is {@code null}, all installed providers are 863adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * searched, otherwise the key store from the specified provider is 864adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * used. 8652f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 866adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 867adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the {@code KeyStore} to be constructed. 868adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param provider 869adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the provider of the {@code KeyStore} to be constructed, 870adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * maybe {@code null}. 871adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param file 872adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code File} that contains the data for the {@code 873adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * KeyStore}. 874adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param protectionParameter 875adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code ProtectionParameter} used to protect the stored 876adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * keys. 877adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new {@code Builder} that creates a new {@code KeyStore} 878adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * based on the provided arguments. 879adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 880adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code type, protectionParameter} or {@code file} is 881adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code null}. 882adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 883adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code protectionParameter} not an instance of either 884adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code PasswordProtection} or {@code 885adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * CallbackHandlerProtection}, {@code file} is not a file or 886adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * does not exist at all. 887adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 888adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static Builder newInstance(String type, Provider provider, 889adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project File file, ProtectionParameter protectionParameter) { 890adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // check null parameters 891adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (type == null) { 892897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("type == null"); 893adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 894adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (protectionParameter == null) { 895897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("protectionParameter == null"); 896adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 897adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (file == null) { 898897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("file == null"); 899adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 900adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // protection parameter should be PasswordProtection or 901adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // CallbackHandlerProtection 902adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!(protectionParameter instanceof PasswordProtection) 903adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project && !(protectionParameter instanceof CallbackHandlerProtection)) { 904897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("protectionParameter is neither PasswordProtection nor CallbackHandlerProtection instance"); 905adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 906adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // check file parameter 907adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!file.exists()) { 908897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("File does not exist: " + file.getName()); 909adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 910adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!file.isFile()) { 911897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("Not a regular file: " + file.getName()); 912adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 913adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // create new instance 914adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return new BuilderImpl(null, protectionParameter, file, 915adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project type, provider, AccessController.getContext()); 916adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 917adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 918adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 919adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a new {@code Builder} that creates a new {@code KeyStore} 920adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * based on the provided arguments. 921adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * <p> 922adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * If {@code provider} is {@code null}, all installed providers are 923adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * searched, otherwise the key store from the specified provider is 924adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * used. 9252f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 926adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param type 927adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the type of the {@code KeyStore} to be constructed. 928adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param provider 929adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the provider of the {@code KeyStore} to be constructed, 930adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * maybe {@code null}. 931adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param protectionParameter 932adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code ProtectionParameter} used to protect the stored 933adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * keys. 934adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a new {@code Builder} that creates a new {@code KeyStore} 935adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * based on the provided arguments. 936adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 937adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code type} or {@code protectionParameter} is {@code 938adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * null}. 939adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 940adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code protectionParameter} not an instance of either 941adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code PasswordProtection} or {@code 942adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * CallbackHandlerProtection}, {@code file} is not a file or 943adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * does not exist at all. 944adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 945adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static Builder newInstance(String type, Provider provider, 946adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ProtectionParameter protectionParameter) { 947adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (type == null) { 948897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("type == null"); 949adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 950adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (protectionParameter == null) { 951897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("protectionParameter == null"); 952adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 953adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return new BuilderImpl(null, protectionParameter, null, 954adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project type, provider, AccessController.getContext()); 955adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 956adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 957adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /* 958adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * This class is implementation of abstract class KeyStore.Builder 959f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes * 960adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @author Vera Petrashkova 961f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes * 962adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 963adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private static class BuilderImpl extends Builder { 964adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used KeyStore 965adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private KeyStore keyStore; 966adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 967adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used ProtectionParameter 968adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private ProtectionParameter protParameter; 969adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 970adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used KeyStore type 971adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final String typeForKeyStore; 972adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 973adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used KeyStore provider 974adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final Provider providerForKeyStore; 975adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 976adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used file for KeyStore loading 977adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final File fileForLoad; 978adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 979adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store getKeyStore method was invoked or not for KeyStoreBuilder 980adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private boolean isGetKeyStore = false; 981adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 982adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store last Exception in getKeyStore() 983adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private KeyStoreException lastException; 984adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 985adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store AccessControlContext which is used in getKeyStore() method 986adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final AccessControlContext accControlContext; 987adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 988adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 989adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Constructor BuilderImpl initializes private fields: keyStore, 990adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // protParameter, typeForKeyStore providerForKeyStore fileForLoad, 991adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // isGetKeyStore 992adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 993adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project BuilderImpl(KeyStore ks, ProtectionParameter pp, File file, 994adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project String type, Provider provider, AccessControlContext context) { 995adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project super(); 996adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project keyStore = ks; 997adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project protParameter = pp; 998adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project fileForLoad = file; 999adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project typeForKeyStore = type; 1000adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project providerForKeyStore = provider; 1001adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isGetKeyStore = false; 1002adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project lastException = null; 1003adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project accControlContext = context; 1004adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1005adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1006adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 1007adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Implementation of abstract getKeyStore() method If 1008adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // KeyStoreBuilder encapsulates KeyStore object then this object is 1009adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // returned 1010f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes // 1011adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // If KeyStoreBuilder encapsulates KeyStore type and provider then 1012adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // KeyStore is created using these parameters. If KeyStoreBuilder 1013adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // encapsulates file and ProtectionParameter then KeyStore data are 1014adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // loaded from FileInputStream that is created on file. If file is 1015adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // not defined then KeyStore object is initialized with null 1016adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // InputStream and null password. 1017f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes // 1018adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Result KeyStore object is returned. 1019adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 10202f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes @Override 1021adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public synchronized KeyStore getKeyStore() throws KeyStoreException { 1022adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // If KeyStore was created but in final block some exception was 1023adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // thrown 1024adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // then it was stored in lastException variable and will be 1025adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // thrown 1026adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // all subsequent calls of this method. 1027adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (lastException != null) { 1028adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw lastException; 1029adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1030adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (keyStore != null) { 1031adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isGetKeyStore = true; 1032adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return keyStore; 1033adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1034adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1035adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project try { 1036adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project final KeyStore ks; 1037adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project final char[] passwd; 1038adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1039adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // get KeyStore instance using type or type and provider 1040adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ks = (providerForKeyStore == null ? KeyStore 1041adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project .getInstance(typeForKeyStore) : KeyStore 1042adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project .getInstance(typeForKeyStore, providerForKeyStore)); 1043adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // protection parameter should be PasswordProtection 1044adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // or CallbackHandlerProtection 1045adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (protParameter instanceof PasswordProtection) { 1046adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project passwd = ((PasswordProtection) protParameter) 1047adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project .getPassword(); 1048adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } else if (protParameter instanceof CallbackHandlerProtection) { 1049adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project passwd = KeyStoreSpi 1050adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project .getPasswordFromCallBack(protParameter); 1051adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } else { 1052897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new KeyStoreException("protectionParameter is neither PasswordProtection nor CallbackHandlerProtection instance"); 1053adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1054adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1055adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // load KeyStore from file 1056adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project AccessController.doPrivileged( 1057adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project new PrivilegedExceptionAction<Object>() { 1058adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public Object run() throws Exception { 1059adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (fileForLoad != null) { 1060adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project FileInputStream fis = null; 1061adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project try { 1062adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project fis = new FileInputStream(fileForLoad); 1063adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ks.load(fis, passwd); 1064adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } finally { 1065adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // close file input stream 1066adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if( fis != null ) { 1067f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes fis.close(); 1068adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1069adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1070adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } else { 1071adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ks.load(new TmpLSParameter( 1072adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project protParameter)); 1073adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1074adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return null; 1075adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1076adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project }, accControlContext); 1077adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1078f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes 1079adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isGetKeyStore = true; 10802f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes return ks; 1081adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } catch (KeyStoreException e) { 1082adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store exception 1083adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw lastException = e; 1084adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } catch (Exception e) { 1085adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Override exception 1086adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project throw lastException = new KeyStoreException(e); 1087adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1088adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1089adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1090adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 1091adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // This is implementation of abstract method 1092adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // getProtectionParameter(String alias) 1093f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes // 1094adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Return: ProtectionParameter to get Entry which was saved in 1095adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // KeyStore with defined alias 1096adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // 10972f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes @Override 1098adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public synchronized ProtectionParameter getProtectionParameter( 1099adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project String alias) throws KeyStoreException { 1100adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (alias == null) { 1101897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("alias == null"); 1102adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1103adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!isGetKeyStore) { 1104897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalStateException("getKeyStore() was not invoked"); 1105adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1106adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return protParameter; 1107adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1108adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1109adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1110adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /* 1111adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Implementation of LoadStoreParameter interface 1112adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1113adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private static class TmpLSParameter implements LoadStoreParameter { 1114adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1115adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store used protection parameter 1116adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final ProtectionParameter protPar; 1117adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1118adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1119adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Creates TmpLoadStoreParameter object 11202f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * @param protPar protection parameter 1121adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1122adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public TmpLSParameter(ProtectionParameter protPar) { 1123adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.protPar = protPar; 1124adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1125adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1126adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1127adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * This method returns protection parameter 1128adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1129adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public ProtectionParameter getProtectionParameter() { 1130adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return protPar; 1131adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1132adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1133adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1134adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1135adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1136adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code CallbackHandlerProtection} is a {@code ProtectionParameter} that 1137adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * encapsulates a {@link CallbackHandler}. 1138adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1139adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static class CallbackHandlerProtection implements 1140adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project ProtectionParameter { 1141adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store CallbackHandler 1142adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final CallbackHandler callbackHandler; 1143adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1144adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1145adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code CallbackHandlerProtection} with 1146adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code CallbackHandler}. 11472f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1148adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param handler 1149adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the {@code CallbackHandler}. 1150adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 1151adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code handler} is {@code null}. 1152adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1153adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public CallbackHandlerProtection(CallbackHandler handler) { 1154adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (handler == null) { 1155897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("handler == null"); 1156adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1157adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.callbackHandler = handler; 1158adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1159adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1160adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1161adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the {@code CallbackHandler}. 11622f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1163adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the {@code CallbackHandler}. 1164adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1165adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public CallbackHandler getCallbackHandler() { 1166adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return callbackHandler; 1167adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1168adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1169adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1170adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1171adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code Entry} is the common marker interface for a {@code KeyStore} 1172adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * entry. 1173adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1174adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static interface Entry { 1175adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1176adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1177adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1178adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code LoadStoreParameter} represents a parameter that specifies how a 1179adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore} can be loaded and stored. 11802f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1181adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see KeyStore#load(LoadStoreParameter) 1182adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @see KeyStore#store(LoadStoreParameter) 1183adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1184adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static interface LoadStoreParameter { 1185adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1186adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the {@code ProtectionParameter} which is used to protect data 1187adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * in the {@code KeyStore}. 11882f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1189adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the {@code ProtectionParameter} which is used to protect data 1190adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * in the {@code KeyStore}, maybe {@code null}. 1191adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1192adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public ProtectionParameter getProtectionParameter(); 1193adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1194adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1195adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1196adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code PasswordProtection} is a {@code ProtectionParameter} that protects 1197adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * a {@code KeyStore} using a password. 1198adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1199adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static class PasswordProtection implements ProtectionParameter, 1200adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project Destroyable { 1201adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1202adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store password 1203adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private char[] password; 1204adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1205adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private boolean isDestroyed = false; 1206adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1207adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1208adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code PasswordProtection} with a 1209adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * password. A copy of the password is stored in the new {@code 1210adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * PasswordProtection} object. 12112f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1212adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param password 1213adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the password, maybe {@code null}. 1214adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1215adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public PasswordProtection(char[] password) { 1216d21d78fd49a2d798218e8c8aefbddb26a0e71bbbElliott Hughes if (password != null) { 1217d21d78fd49a2d798218e8c8aefbddb26a0e71bbbElliott Hughes this.password = password.clone(); 1218d21d78fd49a2d798218e8c8aefbddb26a0e71bbbElliott Hughes } 1219adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1220adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1221adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1222adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the password. 12232f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1224adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the password. 1225adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalStateException 1226adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the password has been destroyed. 1227adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1228adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public synchronized char[] getPassword() { 1229adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (isDestroyed) { 1230897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalStateException("Password was destroyed"); 1231adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1232adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return password; 1233adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1234adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1235adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1236adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Destroys / invalidates the password. 12372f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1238adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws DestroyFailedException 1239adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if the password could not be invalidated. 1240adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1241adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public synchronized void destroy() throws DestroyFailedException { 1242adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project isDestroyed = true; 1243adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (password != null) { 1244adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project Arrays.fill(password, '\u0000'); 1245adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project password = null; 1246adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1247adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1248adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1249adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1250adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Indicates whether the password is invalidated. 12512f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1252adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return {@code true} if the password is invalidated, {@code false} 1253adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * otherwise. 1254adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1255adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public synchronized boolean isDestroyed() { 1256adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return isDestroyed; 1257adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1258adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1259adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1260adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1261adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code ProtectionParameter} is a marker interface for protection 1262adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * parameters. A protection parameter is used to protect the content of a 1263adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code KeyStore}. 1264adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1265adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static interface ProtectionParameter { 1266adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1267adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1268adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1269adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code PrivateKeyEntry} represents a {@code KeyStore} entry that 1270adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * holds a private key. 1271adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1272adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static final class PrivateKeyEntry implements Entry { 1273adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store Certificate chain 1274adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private Certificate[] chain; 1275adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1276adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store PrivateKey 1277adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private PrivateKey privateKey; 1278adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1279adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1280adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code PrivateKeyEntry} with the given 1281adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code PrivateKey} and the provided certificate chain. 12822f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1283adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param privateKey 1284adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the private key. 1285adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param chain 1286adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the ordered certificate chain with the certificate 1287adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * corresponding to the private key at index 0. 1288adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 1289adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code privateKey} or {@code chain} is {@code null}. 1290adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws IllegalArgumentException 1291adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code chain.length == 0}, the algorithm of the 1292adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * private key does not match the algorithm of the public 1293adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * key of the first certificate or the certificates are not 1294adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * all of the same type. 1295adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1296adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public PrivateKeyEntry(PrivateKey privateKey, Certificate[] chain) { 1297adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (privateKey == null) { 1298897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("privateKey == null"); 1299adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1300adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (chain == null) { 1301897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("chain == null"); 1302adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1303adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1304adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (chain.length == 0) { 1305897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("chain.length == 0"); 1306adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1307adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Match algorithm of private key and algorithm of public key from 1308adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // the end certificate 1309adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project String s = chain[0].getType(); 1310897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes if (!(chain[0].getPublicKey().getAlgorithm()).equals(privateKey.getAlgorithm())) { 1311897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("Algorithm of private key does not match " + 1312897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes "algorithm of public key in end certificate of entry (with index number: 0)"); 1313adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1314adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Match certificate types 1315adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project for (int i = 1; i < chain.length; i++) { 1316adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (!s.equals(chain[i].getType())) { 1317897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new IllegalArgumentException("Certificates from the given chain have different types"); 1318adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1319adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1320adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // clone chain - this.chain = (Certificate[])chain.clone(); 13212f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes boolean isAllX509Certificates = true; 13222f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes // assert chain length > 0 13232f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes for(Certificate cert: chain){ 13242f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes if(!(cert instanceof X509Certificate)){ 13252f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes isAllX509Certificates = false; 13262f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes break; 13272f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 13282f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 1329f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes 13302f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes if(isAllX509Certificates){ 13312f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes this.chain = new X509Certificate[chain.length]; 13322f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 13332f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes else{ 13342f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes this.chain = new Certificate[chain.length]; 13352f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes } 1336adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project System.arraycopy(chain, 0, this.chain, 0, chain.length); 1337adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.privateKey = privateKey; 1338adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1339adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1340adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1341adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the private key. 13422f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1343adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the private key. 1344adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1345adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public PrivateKey getPrivateKey() { 1346adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return privateKey; 1347adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1348adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1349adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1350adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the certificate chain. 13512f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1352adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the certificate chain. 1353adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1354adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public Certificate[] getCertificateChain() { 1355adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return chain.clone(); 1356adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1357adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1358adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1359adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the certificate corresponding to the private key. 13602f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1361adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the certificate corresponding to the private key. 1362adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1363adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public Certificate getCertificate() { 1364adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return chain[0]; 1365adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1366adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1367adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1368adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a string containing a concise, human-readable description of 1369adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code PrivateKeyEntry}. 13702f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1371adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a printable representation for this {@code PrivateKeyEntry}. 1372adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 13732f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes @Override 1374adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public String toString() { 13752f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes StringBuilder sb = new StringBuilder( 1376f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes "PrivateKeyEntry: number of elements in certificate chain is "); 1377adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project sb.append(Integer.toString(chain.length)); 1378f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes sb.append("\n"); 1379adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project for (int i = 0; i < chain.length; i++) { 1380adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project sb.append(chain[i].toString()); 1381f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes sb.append("\n"); 1382adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1383adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return sb.toString(); 1384adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1385adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1386adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1387adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1388adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code SecretKeyEntry} represents a {@code KeyStore} entry that 1389adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * holds a secret key. 1390adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1391adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static final class SecretKeyEntry implements Entry { 1392adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1393adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store SecretKey 1394adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final SecretKey secretKey; 1395adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1396adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1397adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code SecretKeyEntry} with the given 1398adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code SecretKey}. 13992f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1400adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param secretKey 1401adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the secret key. 1402adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 1403adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code secretKey} is {@code null}. 1404adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1405adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public SecretKeyEntry(SecretKey secretKey) { 1406adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (secretKey == null) { 1407897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("secretKey == null"); 1408adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1409adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.secretKey = secretKey; 1410adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1411adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1412adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1413adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the secret key. 14142f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1415adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the secret key. 1416adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1417adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public SecretKey getSecretKey() { 1418adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return secretKey; 1419adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1420adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1421adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1422adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a string containing a concise, human-readable description of 1423adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code SecretKeyEntry}. 14242f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1425adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a printable representation for this {@code 1426adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * SecretKeyEntry}. 1427adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 14282f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes @Override 1429adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public String toString() { 1430f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes StringBuilder sb = new StringBuilder("SecretKeyEntry: algorithm - "); 1431adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project sb.append(secretKey.getAlgorithm()); 1432adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return sb.toString(); 1433adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1434adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1435adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1436adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1437adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * {@code TrustedCertificateEntry} represents a {@code KeyStore} entry that 1438adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * holds a trusted certificate. 1439adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1440adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public static final class TrustedCertificateEntry implements Entry { 1441adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1442adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project // Store trusted Certificate 1443adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project private final Certificate trustCertificate; 1444adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1445adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1446adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Constructs a new instance of {@code TrustedCertificateEntry} with the 1447adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * given {@code Certificate}. 14482f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1449adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @param trustCertificate 1450adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * the trusted certificate. 1451adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @throws NullPointerException 1452adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * if {@code trustCertificate} is {@code null}. 1453adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1454adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public TrustedCertificateEntry(Certificate trustCertificate) { 1455adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project if (trustCertificate == null) { 1456897538a36c18f4db8f9f68ee566aec0bda842e9fElliott Hughes throw new NullPointerException("trustCertificate == null"); 1457adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1458adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project this.trustCertificate = trustCertificate; 1459adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1460adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1461adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1462adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns the trusted certificate. 14632f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1464adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return the trusted certificate. 1465adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 1466adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public Certificate getTrustedCertificate() { 1467adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project return trustCertificate; 1468adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1469adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project 1470adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project /** 1471adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * Returns a string containing a concise, human-readable description of 1472adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * this {@code TrustedCertificateEntry}. 14732f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes * 1474adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * @return a printable representation for this {@code 1475adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project * TrustedCertificateEntry}. 1476adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project */ 14772f9e468ed4985edfd5e351faf2089d91e561e41dElliott Hughes @Override 1478adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project public String toString() { 1479f33eae7e84eb6d3b0f4e86b59605bb3de73009f3Elliott Hughes return "Trusted certificate entry:\n" + trustCertificate; 1480adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1481adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project } 1482adc854b798c1cfe3bfd4c27d68d5cee38ca617daThe Android Open Source Project} 1483