[jboss-jira] [JBoss JIRA] (ELY-969) Add a KeyStore implementation that can use the key store password for retrieving entries.

Darran Lofthouse (JIRA) issues at jboss.org
Mon Feb 20 05:51:00 EST 2017


    [ https://issues.jboss.org/browse/ELY-969?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13366011#comment-13366011 ] 

Darran Lofthouse commented on ELY-969:
--------------------------------------

At the key store level we could have the option of defining different filters and each of those being associated with a different credential reference - we could then aggregate the results together giving you one KeyStore able to return different entries using a different protection parameter for each.

> Add a KeyStore implementation that can use the key store password for retrieving entries.
> -----------------------------------------------------------------------------------------
>
>                 Key: ELY-969
>                 URL: https://issues.jboss.org/browse/ELY-969
>             Project: WildFly Elytron
>          Issue Type: Feature Request
>          Components: KeyStores
>            Reporter: Darran Lofthouse
>            Assignee: Darran Lofthouse
>             Fix For: 1.1.0.Beta28
>
>
> A KeyManager which uses a KeyStore is defined independently of the KeyStore - it is the KeyManager that has the password for the entry in the KeyStore whilst the KeyStore has the password for the overall store.
> In many cases the password used for the overall store is the same password as used for the entries.
> We should provide a KeyStore implementation that can substitute the password received.
> We may even be able to go one step further and add a password resolver which could mean a CredentialStore is used to obtain the password for different entries,



--
This message was sent by Atlassian JIRA
(v7.2.3#72005)


More information about the jboss-jira mailing list