Bundles an X.509 certificate, its issuing chain and the matching private key extracted from a PKCS12 keystore. Produced by SSLTools.parsePKCS12File when a website's uploaded certificate file is parsed, and passed around wherever the platform needs to install a custom SSL certificate for a domain. Immutable once constructed.
Properties
| Property | Returns | Description |
|---|---|---|
| certificate | X509Certificate | The end-entity certificate for the domain, as parsed from the keystore. Never null once the holder is constructed successfully. |
| chainCertificates | X509Certificate[] | The certificate chain leading from the end-entity certificate up to a trusted root, in issuance order. May be empty if the keystore entry carried no chain. |
| privateKey | PrivateKey | The private key matching the end-entity certificate, used to configure SSL for the domain. |
Methods
getCertificate()
Returns: X509Certificate
The end-entity certificate for the domain, as parsed from the keystore. Never null once the holder is constructed successfully.
getChainCertificates()
Returns: X509Certificate[]
The certificate chain leading from the end-entity certificate up to a trusted root, in issuance order. May be empty if the keystore entry carried no chain.
getPrivateKey()
Returns: PrivateKey
The private key matching the end-entity certificate, used to configure SSL for the domain.