Micron Document




Java KeyStore
──────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────
top
A Java KeyStore (JKS) is a repository of security certificates – either authorization certificates or public key certificates – plus corresponding private keys, used for instance in TLS encryption.

In IBM WebSphere Application Server and Oracle WebLogic Server, a file with extension jks serves as a keystore.

The Java Development Kit maintains a CA keystore file named cacerts in folder jre/lib/security. JDKs provide a tool named keytoolcite-ref-1[1] to manipulate the keystore. keytool has no functionality to extract the private key out of the keystore, but this is possible with third-party tools like jksExportKey, CERTivity,cite-ref-2[2] Porteclecite-ref-3[3] and KeyStore Explorer.cite-ref-4[4]

Contents


──────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────────

See also
References

cite-note-11. The keytool Command - a key and certificate management utility
cite-note-22. CERTivity - A multi-platform visual tool for managing keystores
cite-note-33. Portecle - Portecle is an open-source GUI application for creating, managing and examining keystores.
cite-note-44. KeyStore Explorer - An open source GUI replacement for the Java command-line utilities keytool, jarsigner and jadtool.

External links

• Javadoc for KeyStore