public class PrivateKey extends Key
Key.KeyType, Key.VendorDefinedKeyBuilderObject.ObjectClass, Object.VendorDefinedObjectBuilder| Modifier and Type | Field and Description |
|---|---|
protected BooleanAttribute |
alwaysAuthenticate_
True, if the user has to supply the PIN for each use (sign or decrypt) with the key.
|
protected BooleanAttribute |
alwaysSensitive_
True, if this private key was always sensitive.
|
protected BooleanAttribute |
decrypt_
True, if this private key can be used for encryption.
|
protected BooleanAttribute |
extractable_
True, if this private key can not be extracted from the token.
|
protected BooleanAttribute |
neverExtractable_
True, if this private key was never extractable.
|
protected BooleanAttribute |
sensitive_
True, if this private key is sensitive.
|
protected BooleanAttribute |
sign_
True, if this private key can be used for signing.
|
protected BooleanAttribute |
signRecover_
True, if this private key can be used for signing with recover.
|
protected ByteArrayAttribute |
subject_
The subject of this private key.
|
protected BooleanAttribute |
unwrap_
True, if this private key can be used for unwrapping wrapped keys.
|
protected AttributeArray |
unwrapTemplate_
Template of the key, that can be unwrapped.
|
protected BooleanAttribute |
wrapWithTrusted_
True, if this private key can only be wrapped with a wrapping key having set the attribute
trusted to true.
|
allowedMechanisms_, derive_, endDate_, id_, keyGenMechanism_, keyType_, keyTypeNames_, local_, startDate_, vendorKeyBuilder_label_, modifiable_, private_, token_attributeTable_, objectClass_, objectClassNames_, objectHandle_, vendorObjectBuilder_| Modifier | Constructor and Description |
|---|---|
|
PrivateKey()
Default Constructor.
|
protected |
PrivateKey(Session session,
long objectHandle)
Called by sub-classes to create an instance of a PKCS#11 private key.
|
| Modifier and Type | Method and Description |
|---|---|
protected void |
allocateAttributes()
Allocates the attribute objects for this class and adds them to the attribute table.
|
java.lang.Object |
clone()
Create a (deep) clone of this object.
|
boolean |
equals(java.lang.Object otherObject)
Compares all member variables of this object with the other object.
|
BooleanAttribute |
getAlwaysAuthenticate()
Gets the always authenticate attribute of this key.
|
BooleanAttribute |
getAlwaysSensitive()
Gets the always sensitive attribute of this key.
|
LongAttribute |
getAuthPinFlags()
Deprecated.
since pkcs#11 v2.11 - always returns null
|
BooleanAttribute |
getDecrypt()
Gets the decrypt attribute of this key.
|
BooleanAttribute |
getExtractable()
Gets the extractable attribute of this key.
|
static Object |
getInstance(Session session,
long objectHandle)
The getInstance method of the Object class uses this method to create an instance of a PKCS#11
private key.
|
BooleanAttribute |
getNeverExtractable()
Gets the never extractable attribute of this key.
|
BooleanAttribute |
getSecondaryAuth()
Deprecated.
since pkcs#11 v2.11 - always returns null
|
BooleanAttribute |
getSensitive()
Gets the sensitive attribute of this key.
|
BooleanAttribute |
getSign()
Gets the sign attribute of this key.
|
BooleanAttribute |
getSignRecover()
Gets the sign recover attribute of this key.
|
ByteArrayAttribute |
getSubject()
Gets the subject attribute of this key.
|
protected static Object |
getUnknownPrivateKey(Session session,
long objectHandle)
Try to create a key which has no or an unknown private key type type attribute.
|
BooleanAttribute |
getUnwrap()
Gets the unwrap attribute of this key.
|
AttributeArray |
getUnwrapTemplate()
Gets the unwrap template attribute of this key.
|
BooleanAttribute |
getWrapWithTrusted()
Gets the wrap with trusted attribute of this key.
|
boolean |
isAlwaysAuthenticate()
Check whether this key's always authenticate attribute is set to true.
|
boolean |
isAlwaysSensitive()
Check whether this key's always sensitive attribute is set to true.
|
boolean |
isDecrypt()
Check whether this key's decrypt attribute is set to true.
|
boolean |
isExtractable()
Check whether this key's extractable attribute is set to true.
|
boolean |
isNeverExtractable()
Check whether this key's never extractable attribute is set to true.
|
boolean |
isSensitive()
Check whether this key's sensitive attribute is set to true.
|
boolean |
isSign()
Check whether this key's sign attribute is set to true.
|
boolean |
isSignRecover()
Check whether this key's sign recover attribute is set to true.
|
boolean |
isUnwrap()
Check whether this key's unwrap attribute is set to true.
|
boolean |
isWrapWithTrusted()
Check whether this key's wrap with trusted attribute is set to true.
|
protected static void |
putAttributesInTable(PrivateKey object)
Put all attributes of the given object into the attributes table of this object.
|
boolean |
readAlwaysAuthenticate()
Read the value of the always authenticate attribute.
|
boolean |
readAlwaysSensitive()
Read the value of the always sensitive attribute.
|
boolean |
readDecrypt()
Read the value of the decrypt attribute.
|
boolean |
readExtractable()
Read the value of the extractable attribute.
|
boolean |
readNeverExtractable()
Read the value of the never extractable attribute.
|
boolean |
readSensitive()
Read the value of the sensitive attribute.
|
boolean |
readSign()
Read the value of the sign attribute.
|
boolean |
readSignRecover()
Read the value of the sign recover attribute.
|
byte[] |
readSubject()
Read the value of the subject attribute.
|
boolean |
readUnwrap()
Read the value of the unwrap attribute.
|
Object |
readUnwrapTemplate()
Read the value of the unwrap template attribute.
|
boolean |
readWrapWithTrusted()
Read the value of the wrap with trusted attribute.
|
PrivateKey |
setAlwaysAuthenticate(boolean alwaysAuthenticate)
Set the value of the always authenticate attribute.
|
PrivateKey |
setAlwaysSensitive(boolean alwaysSensitive)
Set the value of the always sensitive attribute.
|
PrivateKey |
setDecrypt(boolean decrypt)
Set the value of the decrypt attribute.
|
PrivateKey |
setExtractable(boolean extractable)
Set the value of the extractable attribute.
|
PrivateKey |
setNeverExtractable(boolean neverExtractable)
Set the value of the never extractable attribute.
|
PrivateKey |
setSensitive(boolean sensitive)
Set the value of the sensitive attribute.
|
PrivateKey |
setSign(boolean sign)
Set the value of the sign attribute.
|
PrivateKey |
setSignRecover(boolean signRecover)
Set the value of the sign recover attribute.
|
PrivateKey |
setSubject(byte[] subject)
Set the value of the subject attribute.
|
PrivateKey |
setUnwrap(boolean unwrap)
Set the value of the unwrap attribute.
|
PrivateKey |
setUnwrapTemplate(Object unwrapTemplate)
Set the value of the unwrap template attribute.
|
PrivateKey |
setWrapWithTrusted(boolean wrapWithTrusted)
Set the value of the wrap with trusted attribute.
|
java.lang.String |
toString()
This method returns a string representation of the current object.
|
getAllowedMechanisms, getDerive, getEndDate, getId, getKeyGenMechanism, getKeyType, getKeyTypeName, getLocal, getStartDate, getVendorDefinedKeyBuilder, hashCode, isDerivable, isDerive, isLocal, putAttributesInTable, readAllowedMechanisms, readDerive, readEndDate, readId, readKeyGenMechanism, readKeyType, readLocal, readStartDate, setAllowedMechanisms, setDerive, setEndDate, setId, setKeyGenMechanism, setKeyType, setLocal, setStartDate, setVendorDefinedKeyBuildergetLabel, getModifiable, getPrivate, getToken, isModifiable, isPrivate, isToken, putAttributesInTable, readLabel, readModifiable, readPrivate, readToken, setLabel, setModifiable, setPrivate, setTokencheckAttributesState, checkAttributeState, filterExcludedAttributes, filterExcludedAttributes, getAttribute, getAttributeTable, getAttributeValue, getAttributeValues, getExcludedAttributes, getObjectClass, getObjectClassName, getObjectHandle, getSetAttributes, getSetAttributes, getUnknownObject, getVendorDefinedObjectBuilder, hasExcluded, putAttribute, putAttributesInTable, readAttributes, removeAttribute, setObjectHandle, setVendorDefinedObjectBuilder, toStringprotected ByteArrayAttribute subject_
protected BooleanAttribute sensitive_
protected BooleanAttribute decrypt_
protected BooleanAttribute sign_
protected BooleanAttribute signRecover_
protected BooleanAttribute unwrap_
protected BooleanAttribute extractable_
protected BooleanAttribute alwaysSensitive_
protected BooleanAttribute neverExtractable_
protected BooleanAttribute wrapWithTrusted_
protected AttributeArray unwrapTemplate_
protected BooleanAttribute alwaysAuthenticate_
public PrivateKey()
protected PrivateKey(Session session, long objectHandle) throws TokenException
session - The session to use for reading attributes. This session must have the appropriate
rights; i.e. it must be a user-session, if it is a private object.objectHandle - The object handle as given from the PKCS#111 module.TokenException - If getting the attributes failed.public static Object getInstance(Session session, long objectHandle) throws TokenException
session - The session to use for reading attributes. This session must have the appropriate
rights; i.e. it must be a user-session, if it is a private object.objectHandle - The object handle as given from the PKCS#111 module.TokenException - If getting the attributes failed.protected static Object getUnknownPrivateKey(Session session, long objectHandle) throws TokenException
PrivateKey .session - The session to use.objectHandle - The handle of the objectTokenException - If no object could be created.protected static void putAttributesInTable(PrivateKey object)
object - The object to handle.protected void allocateAttributes()
allocateAttributes in class Keypublic java.lang.Object clone()
public boolean equals(java.lang.Object otherObject)
public PrivateKey setSubject(byte[] subject)
subject - the subject attribute valuepublic ByteArrayAttribute getSubject()
public byte[] readSubject()
public PrivateKey setSensitive(boolean sensitive)
sensitive - the sensitive attribute valuepublic BooleanAttribute getSensitive()
public boolean readSensitive()
public boolean isSensitive()
public BooleanAttribute getSecondaryAuth()
public LongAttribute getAuthPinFlags()
public PrivateKey setDecrypt(boolean decrypt)
decrypt - the decrypt attribute valuepublic BooleanAttribute getDecrypt()
public boolean readDecrypt()
public boolean isDecrypt()
public PrivateKey setSign(boolean sign)
sign - the sign attribute valuepublic BooleanAttribute getSign()
public boolean readSign()
public boolean isSign()
public PrivateKey setSignRecover(boolean signRecover)
signRecover - the sign recover attribute valuepublic BooleanAttribute getSignRecover()
public boolean readSignRecover()
public boolean isSignRecover()
public PrivateKey setUnwrap(boolean unwrap)
unwrap - the unwrap attribute valuepublic BooleanAttribute getUnwrap()
public boolean readUnwrap()
public boolean isUnwrap()
public PrivateKey setExtractable(boolean extractable)
extractable - the extractable attribute valuepublic BooleanAttribute getExtractable()
public boolean readExtractable()
public boolean isExtractable()
public PrivateKey setAlwaysSensitive(boolean alwaysSensitive)
alwaysSensitive - the always sensitive attribute valuepublic BooleanAttribute getAlwaysSensitive()
public boolean readAlwaysSensitive()
public boolean isAlwaysSensitive()
public PrivateKey setNeverExtractable(boolean neverExtractable)
neverExtractable - the never extractable attribute valuepublic BooleanAttribute getNeverExtractable()
public boolean readNeverExtractable()
public boolean isNeverExtractable()
public PrivateKey setWrapWithTrusted(boolean wrapWithTrusted)
wrapWithTrusted - the wrap with trusted attribute valuepublic BooleanAttribute getWrapWithTrusted()
public boolean readWrapWithTrusted()
public boolean isWrapWithTrusted()
public PrivateKey setUnwrapTemplate(Object unwrapTemplate)
unwrapTemplate - the unwrap template attribute valuepublic AttributeArray getUnwrapTemplate()
public Object readUnwrapTemplate()
public PrivateKey setAlwaysAuthenticate(boolean alwaysAuthenticate)
alwaysAuthenticate - the always authenticate attribute valuepublic BooleanAttribute getAlwaysAuthenticate()
public boolean readAlwaysAuthenticate()
public boolean isAlwaysAuthenticate()