Jump to content

Java KeyStore

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by 2600:1700:2320:a320:a02b:cb95:bf1d:c5e2 (talk) at 22:10, 7 January 2022 (Updated to a newer documentation set). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

A Java KeyStore (JKS) is a repository of security certificates – either authorization certificates or public key certificates – plus corresponding private keys, used for instance in TLS encryption.

In IBM WebSphere Application Server and Oracle WebLogic Server, a file with extension jks serves as a keystore.

The Java Development Kit maintains a CA keystore file named cacerts in folder jre/lib/security. JDKs provide a tool named keytool[1] to manipulate the keystore. keytool has no functionality to extract the private key out of the keystore, but this is possible with third-party tools like jksExportKey, CERTivity,[2] Portecle[3] and KeyStore Explorer.[4]

See also

References