Interface Summary
A specification of the result of a certification path builder algorithm.
Performs one or more checks on each
Certificate of a
CertPath.
A specification of certification path algorithm parameters.
The reason the validation algorithm failed.
A specification of the result of a certification path validator algorithm.
A selector that defines a set of criteria for selecting
Certificates.
A specification of
CertStore parameters.
A selector that defines a set of criteria for selecting
CRLs.
This interface represents an X.509 extension.
An immutable valid policy tree node as defined by the PKIX certification path validation algorithm.
Interface for an X.509 extension.
Class Summary
Abstract class for managing a variety of identity certificates.
Alternate Certificate class for serialization.
This class defines the functionality of a certificate factory, which is used to generate certificate, certification path (
CertPath) and certificate revocation list (CRL) objects from their encodings.
This class defines the
Service Provider Interface (
SPI) for the
CertificateFactory class.
An immutable sequence of certificates (a certification path).
Alternate
CertPath class for serialization.
A class for building certification paths (also known as certificate chains).
A class for validating certification paths (also known as certificate chains).
A class for retrieving
Certificates and
CRLs from a repository.
The
Service Provider Interface (
SPI) for the
CertStore class.
Parameters used as input for the Collection
CertStore algorithm.
This class is an abstraction of certificate revocation lists (CRLs) that have different formats but important common uses.
Parameters used as input for the LDAP
CertStore algorithm.
Parameters used as input for the PKIX
CertPathBuilder algorithm.
This class represents the successful result of the PKIX certification path builder algorithm.
An abstract class that performs one or more checks on an
X509Certificate.
This class represents the successful result of the PKIX certification path validation algorithm.
Parameters used as input for the PKIX
CertPathValidator algorithm.
A
PKIXCertPathChecker for checking the revocation status of certificates with the PKIX algorithm.
An immutable policy qualifier represented by the ASN.1 PolicyQualifierInfo structure.
A trust anchor or most-trusted Certification Authority (CA).
Abstract class for X.509 certificates.
A
CertSelector that selects
X509Certificates that match all specified criteria.
Abstract class for an X.509 Certificate Revocation List (CRL).
Abstract class for a revoked certificate in a CRL (Certificate Revocation List).
A
CRLSelector that selects
X509CRLs that match all specified criteria.
Enum Summary
The BasicReason enumerates the potential reasons that a certification path of any type may be invalid.
The
PKIXReason enumerates the potential PKIX-specific reasons that an X.509 certification path may be invalid according to the PKIX (RFC 3280) standard.
Various revocation options that can be specified for the revocation checking mechanism.
Exception Summary
Certificate Encoding Exception.
This exception indicates one of a variety of certificate problems.
Certificate Expired Exception.
Certificate is not yet valid exception.
Certificate Parsing Exception.
An exception that indicates an X.509 certificate is revoked.
An exception indicating one of a variety of problems encountered when building a certification path with a
CertPathBuilder.
An exception indicating one of a variety of problems encountered when validating a certification path.
An exception indicating one of a variety of problems retrieving certificates and CRLs from a
CertStore.
CRL (Certificate Revocation List) Exception.
Package java.security.cert Description
Provides classes and interfaces for parsing and managing certificates, certificate revocation lists (CRLs), and certification paths. It contains support for X.509 v3 certificates and X.509 v2 CRLs.
Package Specification
Related Documentation
For information about X.509 certificates and CRLs, please see:
-
Since:
-
1.2