Bundles an X.509 certificate, its issuing chain and the matching private key extracted from a PKCS12 keystore. Produced by SSLTools.parsePKCS12File when a website's uploaded certificate file is parsed, and passed around wherever the platform needs to install a custom SSL certificate for a domain. Immutable once constructed.


Properties

PropertyReturnsDescription
certificateX509CertificateThe end-entity certificate for the domain, as parsed from the keystore. Never null once the holder is constructed successfully.
chainCertificatesX509Certificate[]The certificate chain leading from the end-entity certificate up to a trusted root, in issuance order. May be empty if the keystore entry carried no chain.
privateKeyPrivateKeyThe private key matching the end-entity certificate, used to configure SSL for the domain.

Methods

getCertificate()

Returns: X509Certificate

The end-entity certificate for the domain, as parsed from the keystore. Never null once the holder is constructed successfully.

getChainCertificates()

Returns: X509Certificate[]

The certificate chain leading from the end-entity certificate up to a trusted root, in issuance order. May be empty if the keystore entry carried no chain.

getPrivateKey()

Returns: PrivateKey

The private key matching the end-entity certificate, used to configure SSL for the domain.

To get full access to the Kademi Hub existing customers can login here, or new customers can register here.