no java guru..but would like to help
Hey Dilenger4,
This what I got from the api documentation:
first part is bit confusing...
public abstract class KeyStoreSpi
extends Object
This class defines the Service Provider Interface (SPI) for the KeyStore class. All the abstract methods in this class must be implemented by each cryptographic service provider who wishes to supply the implementation of a keystore for a particular keystore type.
I can't seem to fully understand this myself...
Second part..there is a clearer example in the API...
The certificate takes a string from what the API indicates...
public abstract class Certificate
extends Object
Abstract class for managing a variety of identity certificates. An identity certificate is a binding of a principal to a public key which is vouched for by another principal. (A principal represents an entity such as an individual user, a group, or a corporation.)
This class is an abstraction for certificates that have different formats but important common uses. For example, different types of certificates, such as X.509 and PGP, share general certificate functionality (like encoding and verifying) and some types of information (like a public key).
X.509, PGP, and SDSI certificates can all be implemented by subclassing the Certificate class, even though they contain different sets of information, and they store and retrieve the information in different ways.
well the certificate chain is taking string data types...I am not sure if this helps
I would like learn about java security
there is a book on java security..i think orielly publication...
suprising I don't have the book.:)
Manoj