[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [iaik-jce] Convert JCE keystore to IAIK
Hello, this this also mean we must transfer the contents of the cacerts file
which contains the
trusted certificates of Verisign which ships with the JDK to an IAIK
To do this, I assume that both providers can coexist, so that in the
java.security file we would have
Then we can instatiate two different keystores, correct? Sorry for the
basic questions since I am
very new to crypto-programming.
From: Andreas Sterbenz [mailto:Andreas.Sterbenz@iaik.at]
Sent: Tuesday, November 21, 2000 5:18 AM
To: Paul Mailman; firstname.lastname@example.org
Subject: Re: [iaik-jce] Convert JCE keystore to IAIK
No, we do not support the JCEKS. I believe this is not even possible because
Sun has not made the format public AFAIK.
So to convert an existing JCEKS you could read first read it, transfer the
keys to an IAIKKeyStore, and then save the new KeyStore.
Andreas Sterbenz mailto:Andreas.Sterbenz@iaik.at
----- Original Message -----
From: "Paul Mailman" <email@example.com>
Sent: Friday, November 17, 2000 12:23 AM
Subject: [iaik-jce] Convert JCE keystore to IAIK
> We are converting an applet that had run under the Java Plugin version
> 1.2 and Sun JCE to instead use the IAIK JCE Applet Edition and run in
> the browsers' native JVM. There is a small group of existing users who
> have keystores of type JCEKS and we need to figure out how to support
> them and/or give them a simple, convenient conversion process.
> It appears the IAIK only supports an IAIK Keystore, not JCEKS. Is this
> true? If so, it appears that the only way that we will be able allow
> these users to use the new IAIK-based version of this applet is to
> create an IAIK keystore for them.
> Is there a utility available that can convert a JCEKS to an IAIK
> keystore? Would we have to write our own application, or applet to run
> under the Plugin, to copy the contents of the old JCEKS to a new IAIK
> keystore? Is it even possible? Or is our only recourse to create a
> brand new IAIK keystore, and existing users will have to generate new
> keys, obtain new certificates for them, etc.?
> Mailinglist-archive at
> To unsubscribe send an email to firstname.lastname@example.org with the folowing
content: UNSUBSCRIBE iaik-jce
To unsubscribe send an email to email@example.com with the folowing content: