|
JavaTM 2 Platform Standard Ed. 5.0 |
|||||||||
| ÀÌÀü Ŭ·¡½º ´ÙÀ½ Ŭ·¡½º | ÇÁ·¹ÀÓÀ¸·Î ÇÁ·¹ÀÓ ¾øÀÌ | |||||||||
| °³¿ä: NESTED | Çʵå | constructor | ¸Þ¼µå | »ó¼¼: Çʵå | »ý¼ºÀÚ | ¸Þ¼µå | |||||||||
java.lang.Objectjava.security.cert.CertificateFactory
public class CertificateFactory
ÀÎÁõ¼
ÆÑÅ丮ÀÇ ±â´ÉÀ» Á¤ÀÇÇÕ´Ï´Ù. ÀÎÁõ¼
ÆÑÅ丮´Â ÀÎÁõ¼
°´Ã¼, ÀÎÁõ¼
ÆÐ½º (CertPath) ¹× ÀÎÁõ¼
ÀÇ Ãë¼Ò ¸®½ºÆ® (CRL) °´Ã¼¸¦ ºÎÈ£·ÎºÎÅÍ »ý¼ºÇϱâ À§Çؼ »ç¿ëÇÕ´Ï´Ù.
º¹¼öÀÇ ÀÎÁõ¼
·ÎºÎÅÍ µÇ´Â ºÎÈ£¿¡¼´Â ¹«°ü°è¶ó°í »ý°¢µÇ´Â ÀÎÁõ¼
ÀÇ Ä÷º¼ÇÀ» ±¸¹® ºÐ¼® ÇÒ °æ¿ì¿¡ generateCertificates¸¦ »ç¿ëÇÕ´Ï´Ù. ±×·¸Áö ¾ÊÀº °æ¿ì´Â CertPath (ÀÎÁõ¼
ÃÖÀÎ)¸¦ »ý¼ºÇØ CertPathValidator·Î
°ËÁõÇÒ °æ¿ì¿¡ generateCertPath¸¦ »ç¿ëÇÕ´Ï´Ù.
X. 509
ÀÎÁõ¼
ÆÑÅ丮´Â java.security.cert.X509Certificate
ÀνºÅϽºÀÎ ÀÎÁõ¼¿Íjava.security.cert.X509CRL
ÀνºÅϽºÀÎ CRL¸¦ µ¹·ÁÁÙ Çʿ䰡 ÀÖ½À´Ï´Ù.
´ÙÀ½ÀÇ ¿¹´Â Base64 ·Î encode µÈ ÀÎÁõ¼¸¦ °¡Áö´Â ÆÄÀÏÀ» Àоî³À´Ï´Ù. ÀÌ·¯ÇÑ ÀÎÁõ¼´Â ¼±µÎ°¡ -----BEGIN CERTIFICATE-----¿¡ ÀÇÇØ ´Ü¶ôÁö¾îÁ® Á¾´ÜÀÌ -----END CERTIFICATE-----¿¡ ÀÇÇØ ´Ü¶ôÁö¾îÁý´Ï´Ù. generateCertificate
°¢ È£ÃâÀÌ 1°³ÀÇ ÀÎÁõ¼
¸¸À» »ç¿ëÇØ, ÀÔ·Â ½ºÆ®¸²ÀÇ Àбâ À§°ªÀÌ ÆÄÀϳ»ÀÇ ´ÙÀ½ÀÇ ÀÎÁõ¼¿¡ ³õ¿©Áöµµ·Ï, FileInputStream (mark ¹× reset¸¦ Áö¿ø
Çϰí ÀÖÁö ¾Ê´Ù)¸¦ BufferedInputStream (ÀÌ·¯ÇÑ ¸Þ¼µå¸¦ Áö¿ø)·Î º¯È¯ÇÕ´Ï´Ù.
FileInputStream fis = new FileInputStream(filename);
BufferedInputStream bis = new BufferedInputStream(fis);
CertificateFactory cf = CertificateFactory.getInstance("X. 509");
while (bis.available() > 0) {
Certificate cert = cf.generateCertificate(bis);
System.out.println(cert.toString());
}
´ÙÀ½ÀÇ ¿¹´Â ÆÄÀÏ¿¡ Æ÷ÇԵǰí ÀÖ´Â PKCS#7 Çü½ÄÀÇ ÀÎÁõ¼ ÀÀ´äÀ» ±¸¹® ºÐ¼® ÇØ, ¸ðµç ÀÎÁõ¼¸¦ ÃßÃâÇÕ´Ï´Ù.
FileInputStream fis = new FileInputStream(filename);
CertificateFactory cf = CertificateFactory.getInstance("X. 509");
Collection c = cf.generateCertificates(fis);
Iterator i = c.iterator();
while (i.hasNext()) {
Certificate cert = (Certificate) i.next();
System.out.println(cert);
}
Certificate,
X509Certificate,
CertPath,
CRL,
X509CRL | »ý¼ºÀÚ °³¿ä | |
|---|---|
protected |
CertificateFactory (CertificateFactorySpi certFacSpi,
Provider provider,
String type)
ÁöÁ¤µÈ ŸÀÔÀÇ CertificateFactory °´Ã¼¸¦ ÀÛ¼ºÇØ, ÁöÁ¤µÈ ÇÁ·Î¹ÙÀÌ´õÀÇ ±¸Çö (SPI °´Ã¼)À» °Å±â¿¡ ĸ½¶ÈÇÕ´Ï´Ù. |
| ¸Þ¼µå °³¿ä | |
|---|---|
Certificate |
generateCertificate (InputStream inStream)
ÀÎÁõ¼ °´Ã¼¸¦ »ý¼ºÇØ, ÀÔ·Â ½ºÆ®¸² inStream·Î
ºÎÅÍ ÀоÁø µ¥ÀÌÅ͸¦ »ç¿ëÇØ ±× ÀÎÁõ¼
°´Ã¼¸¦ ÃʱâÈÇÕ´Ï´Ù. |
Collection <? extends Certificate > |
generateCertificates (InputStream inStream)
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸² inStream·Î
ºÎÅÍ ÀоÁø ÀÎÁõ¼
ÀÇ ÄÚ·¹Å©¼Çºä¸¦ ¸®ÅÏÇÕ´Ï´Ù. |
CertPath |
generateCertPath (InputStream inStream)
CertPath °´Ã¼¸¦ »ý¼ºÇØ, InputStreamÀÎ inStream ·ÎºÎÅÍ ÀÐÈù µ¥ÀÌÅÍ·Î ÃʱâÈÇÕ´Ï´Ù. |
CertPath |
generateCertPath (InputStream inStream,
String encoding)
CertPath °´Ã¼¸¦ »ý¼ºÇØ, InputStreamÀÎ inStream ·ÎºÎÅÍ ÀÐÈù µ¥ÀÌÅÍ·Î ÃʱâÈÇÕ´Ï´Ù. |
CertPath |
generateCertPath (List <? extends Certificate > certificates)
CertPath °´Ã¼¸¦ »ý¼ºÇØ, Certificate
List·Î
ÃʱâÈÇÕ´Ï´Ù. |
CRL |
generateCRL (InputStream inStream)
ÀÎÁõ¼ ÀÇ Ãë¼Ò ¸®½ºÆ® (CRL) °´Ã¼¸¦ »ý¼ºÇØ, ÀÔ·Â ½ºÆ®¸² inStream·Î
ºÎÅÍ ÀоÁø µ¥ÀÌÅ͸¦ »ç¿ëÇØ ÃʱâÈÇÕ´Ï´Ù. |
Collection <? extends CRL > |
generateCRLs (InputStream inStream)
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸² inStream·Î
ºÎÅÍ ÀоÁø CRL
ÄÚ·¹Å©¼Çºä¸¦ ¸®ÅÏÇÕ´Ï´Ù. |
Iterator <String > |
getCertPathEncodings ()
ÀÌ ÀÎÁõ¼ ÆÑÅ丮·Î Áö¿øÇÏ´Â CertPath
encodeÀÇ ¹Ýº¹À» ¸®ÅÏÇÕ´Ï´Ù. |
static CertificateFactory |
getInstance (String type)
ÁöÁ¤µÈ ŸÀÔÀÇ ÀÎÁõ¼¸¦ ±¸ÇöÇÏ´Â ÀÎÁõ¼ ÆÑÅ丮 °´Ã¼¸¦ ÀÛ¼ºÇÕ´Ï´Ù. |
static CertificateFactory |
getInstance (String type,
Provider provider)
ÁöÁ¤ÇÑ ÀÎÁõ¼ ŸÀÔÀ¸·Î ÁöÁ¤ÇÑ ÇÁ·Î¹ÙÀÌ´õ·ÎºÎÅÍ ÀÎÁõ¼ ÆÑÅ丮 °´Ã¼¸¦ »ý¼ºÇÕ´Ï´Ù. |
static CertificateFactory |
getInstance (String type,
String provider)
ÁöÁ¤µÈ ÀÎÁõ¼ ŸÀÔÀÇ ÀÎÁõ¼ ÆÑÅ丮 °´Ã¼¸¦, ÁöÁ¤µÈ ÇÁ·Î¹ÙÀÌ´õ·ÎºÎÅÍ ÀÛ¼ºÇÕ´Ï´Ù. |
Provider |
getProvider ()
ÀÌ ÀÎÁõ¼ ÆÑÅ丮ÀÇ ÇÁ·Î¹ÙÀÌ´õ¸¦ ¸®ÅÏÇÕ´Ï´Ù. |
String |
getType ()
ÀÌ ÀÎÁõ¼ ÆÑÅ丮¿¡ °ü·ÃÇÑ ÀÎÁõ¼ ŸÀÔÀÇ À̸§À» ¸®ÅÏÇÕ´Ï´Ù. |
| Ŭ·¡½º java.lang. Object ·ÎºÎÅÍ »ó¼ÓµÈ ¸Þ¼µå |
|---|
clone,
equals,
finalize,
getClass,
hashCode,
notify,
notifyAll,
toString,
wait,
wait,
wait |
| »ý¼ºÀÚ »ó¼¼ |
|---|
protected CertificateFactory(CertificateFactorySpi certFacSpi,
Provider provider,
String type)
certFacSpi - ÇÁ·Î¹ÙÀÌ´õÀÇ ±¸Çöprovider - ÇÁ·Î¹ÙÀÌ´õtype - ÀÎÁõ¼
ŸÀÔ| ¸Þ¼µåÀÇ »ó¼¼ |
|---|
public static final CertificateFactory getInstance(String type)
throws CertificateException
type - ¿ä±¸µÈ ÀÎÁõ¼
ŸÀÔÀÇ À̸§. Ç¥ÁØÀÇ ÀÎÁõ¼
ŸÀÔÀÇÀÚ¼¼ÇÑ ³»¿ëÀº ¡¸Java ¾ÏÈ£È ¾ÆÅ°ÅØÃÄ API »ç¾ç & ·¹ÆÛ·±½º¡¹ÀÇ ºÎ·Ï A¸¦ ÂüÁ¶
CertificateException - ¿ä±¸µÈ ÀÎÁõ¼
ŸÀÔÀÌ, µðÆúÆ®ÀÇ ÇÁ·Î¹ÙÀÌ´õ ÆÐŰÁö¿¡µµ, °Ë»öÇÑ °Í ¿ÜÀÇ ÇÁ·Î¹ÙÀÌ´õ ÆÐŰÁö¿¡µµ ¾ø´Â °æ¿ì
public static final CertificateFactory getInstance(String type,
String provider)
throws CertificateException,
NoSuchProviderException
type - ÀÎÁõ¼
ŸÀÔprovider - ÇÁ·Î¹ÙÀÌ´õ¸í
CertificateException - ÀÎÁõ¼
ŸÀÔÀÌ, ÁöÁ¤µÈ ÇÁ·Î¹ÙÀÌ´õ¿¡ ¾ø´Â °æ¿ì
NoSuchProviderException - ÇÁ·Î¹ÙÀÌ´õ°¡ ¼³Á¤µÇ¾î ÀÖÁö ¾ÊÀº °æ¿ìProvider
public static final CertificateFactory getInstance(String type,
Provider provider)
throws CertificateException
provider´Â µî·ÏµÇ¾î ÀÖÀ» ÇÊ¿ä´Â ¾ø½À´Ï´Ù.
type - ÀÎÁõ¼
ŸÀÔprovider - ÇÁ·Î¹ÙÀÌ´õ
CertificateException - ÀÎÁõ¼
ŸÀÔÀÌ, ÁöÁ¤µÈ ÇÁ·Î¹ÙÀÌ´õ¿¡ ¾ø´Â °æ¿ì
IllegalArgumentException - provider°¡ nullÀÎ °æ¿ìProvider public final Provider getProvider()
public final String getType()
public final Certificate generateCertificate(InputStream inStream)
throws CertificateException
inStream·Î
ºÎÅÍ ÀоÁø µ¥ÀÌÅ͸¦ »ç¿ëÇØ ±× ÀÎÁõ¼
°´Ã¼¸¦ ÃʱâÈÇÕ´Ï´Ù.
ÀÌ ÀÎÁõ¼
ÆÑÅ丮¿¡ ÀÇÇØ Áö¿ø
µÇ°í Àִ Ư¼ö Çü½ÄÀÇ ÀÎÁõ¼¸¦ ÀÌ¿ëÇϱâ À§Çؼ
¸®ÅÏµÈ ÀÎÁõ¼
°´Ã¼¸¦ ´ëÀÀÇÏ´Â ÀÎÁõ¼
Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾îÀÌ ÀÎÁõ¼
ÆÑÅ丮°¡ X. 509 ÀÎÁõ¼¸¦ ±¸ÇöÇÏ´Â °æ¿ì, ¸®ÅÏµÈ ÀÎÁõ¼
°´Ã¼¸¦ X509Certificate Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù.
X. 509 ÀÎÁõ¼
ÀÇ ÀÎÁõ¼
ÆÑÅ丮ÀÇ °æ¿ì´Â inStream·Î
Á¦°øµÇ´Â ÀÎÁõ¼´Â DER ·Î encode µÉ Çʿ䰡 ÀÖ¾î, ¹ÙÀ̳ʸ® ¶Ç´Â ÇÁ¸°Æ® °¡´É (Base64)ÀÎ ºÎÈ£·Î Á¦°øµÇ´Â Àϵµ ÀÖ½À´Ï´Ù. ÀÎÁõ¼°¡ Base64
ºÎÈ£·Î Á¦°øµÇ¾úÀ» °æ¿ì, ¼±µÎ´Â -----BEGIN CERTIFICATE-----¿¡ ÀÇÇØ ´Ü¶ôÁö¾îÁ® Á¾´ÜÀº -----END CERTIFICATE-----¿¡ ÀÇÇØ ´Ü¶ôÁö¾îÁú Çʿ䰡 ÀÖ½À´Ï´Ù.
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸²ÀÌ mark ¹× reset¸¦
Áö¿ø
Çϰí ÀÖÁö ¾Ê´Â °æ¿ì, ÀÌ ¸Þ¼µå´Â ÀÔ·Â ½ºÆ®¸² Àüü¸¦ »ç¿ëÇÕ´Ï´Ù. ±×·¸Áö ¾ÊÀº °æ¿ì, ÀÌ ¸Þ¼µå°¡ ºÒ·Á °¥ ¶§¸¶´Ù ÀÎÁõ¼¸¦ 1°³
¼ÒºñÇØ, ÀÔ·Â ½ºÆ®¸²ÀÇ read À§Ä¡´Â °íÀ¯ÀÇ end-of-certificate ¸¶Ä¿ÀÇ ³ªÁß¿¡ ´ÙÀ½¿¡ »ç¿ë °¡´ÉÇÑ ¹ÙÀÌÆ®·Î ¼³Á¤µË´Ï´Ù. °íÀ¯ÀÇ end-of-certificate ¸¶Ä¿ (EOF ÀÌ¿Ü)°¡ ÀÔ·Â ½ºÆ®¸²ÀÇ µ¥ÀÌÅÍ¿¡ Æ÷ÇÔµÇÁö ¾Ê°í, ÀÎÁõ¼°¡ ±¸¹® ºÐ¼® µÈ ÈÄ¿¡ µ¥ÀÌÅͰ¡ °è¼ÓµÇ´Â °æ¿ì´Â CertificateException°¡ ¹ß»ý µË´Ï´Ù.
inStream - ÀÎÁõ¼
µ¥ÀÌÅ͸¦ °¡Áö´Â ÀÔ·Â ½ºÆ®¸²
CertificateException - ±¸¹® ºÐ¼® ¿¡·¯ÀÇ °æ¿ìpublic final Iterator <String > getCertPathEncodings()
CertPath
encodeÀÇ ¹Ýº¹À» ¸®ÅÏÇÕ´Ï´Ù. ¹Ýº¹ÀÇ Ã³À½Àº µðÆúÆ®ÀÇ encode°¡ µË´Ï´Ù. Ç¥ÁØÀÇ encode¸í°ú ±× Çü½Ä¿¡ ´ëÇØ¼´Â ¡¸Java Certification Path API Programmer's Guide¡¹
ºÎ·Ï A¸¦ ÂüÁ¶ÇϽʽÿÀ.
¸®ÅÏµÈ Iterator¸¦ remove ¸Þ¼µå·Î º¯°æÇÏ·Á°í Çϸé, UnsupportedOperationException°¡ ¹ß»ý µË´Ï´Ù.
CertPath
encode (String·Î
¼)ÀÇ À̸§¿¡ ´ëÇÑ Iterator
public final CertPath generateCertPath(InputStream inStream)
throws CertificateException
CertPath °´Ã¼¸¦ »ý¼ºÇØ, InputStreamÀÎ inStream ·ÎºÎÅÍ ÀÐÈù µ¥ÀÌÅÍ·Î ÃʱâÈÇÕ´Ï´Ù. µ¥ÀÌÅÍ´Â µðÆúÆ®ÀÇ encode°¡ µÇ°í ÀÖÀ¸¸é °¡Á¤µË´Ï´Ù. µðÆúÆ®ÀÇ encodeÀÇ À̸§Àº, getCertPathEncodings ¸Þ¼µå·Î ¸®ÅϵÈ
Iterator
ÃÖÃÊÀÇ ¿ä¼Ò°¡ µË´Ï´Ù.
inStream - µ¥ÀÌÅͰ¡ Æ÷ÇԵǴ InputStream
InputStream·Î
ºÎÅÍÀÇ µ¥ÀÌÅÍ·Î ÃʱâÈµÈ CertPath
CertificateException - º¹È£ÈÁß¿¡ ¿¹¿Ü°¡ ¹ß»ýÇßÀ» °æ¿ì
public final CertPath generateCertPath(InputStream inStream,
String encoding)
throws CertificateException
CertPath °´Ã¼¸¦ »ý¼ºÇØ, InputStreamÀÎ inStream ·ÎºÎÅÍ ÀÐÈù µ¥ÀÌÅÍ·Î ÃʱâÈÇÕ´Ï´Ù. µ¥ÀÌÅÍ´Â ÁöÁ¤ÇÑ encode°¡ µÇ°í ÀÖÀ¸¸é °¡Á¤µË´Ï´Ù. Ç¥ÁØÀÇ encode¸í°ú ±× Çü½Ä¿¡ ´ëÇØ¼´Â ¡¸Java Certification Path API Programmer's Guide¡¹
ºÎ·Ï A¸¦ ÂüÁ¶ÇϽʽÿÀ.
inStream - µ¥ÀÌÅͰ¡ Æ÷ÇԵǴ InputStreamencoding - µ¥ÀÌÅÍ·Î »ç¿ëµÇ´Â encode
InputStream·Î
ºÎÅÍÀÇ µ¥ÀÌÅÍ·Î ÃʱâÈµÈ CertPath
CertificateException - º¹È£ÈÁß¿¡ ¿¹¿Ü°¡ ¹ß»ýÇßÀ» °æ¿ì, ȤÀº ÁöÁ¤ÇÑ encode°¡ Áö¿ø
µÇ¾î ÀÖÁö ¾ÊÀº °æ¿ì
public final CertPath generateCertPath(List <? extends Certificate > certificates)
throws CertificateException
CertPath °´Ã¼¸¦ »ý¼ºÇØ, Certificate
List·Î
ÃʱâÈÇÕ´Ï´Ù.
Á¦°øµÇ´Â ÀÎÁõ¼´Â CertificateFactory·Î
Áö¿ø
µÇ°í ÀÖ´Â Á¾·ùÀÏ Çʿ䰡 ÀÖ½À´Ï´Ù. À̰͵éÀº ÁöÁ¤µÈ List °´Ã¼·ÎºÎÅÍ º¹»çµË´Ï´Ù.
certificates - Certificate
List
CertPath
CertificateException - ¿¹¿Ü°¡ ¹ß»ýÇÏ´Â °æ¿ì
public final Collection <? extends Certificate > generateCertificates(InputStream inStream)
throws CertificateException
inStream·Î
ºÎÅÍ ÀоÁø ÀÎÁõ¼
ÀÇ ÄÚ·¹Å©¼Çºä¸¦ ¸®ÅÏÇÕ´Ï´Ù. ÄÚ·¹Å©¼Çºä´Â ºñ¾îÀÖ´Â °æ¿ìµµ ÀÖ½À´Ï´Ù.
ÀÌ ÀÎÁõ¼
ÆÑÅ丮¿¡ ÀÇÇØ Áö¿ø
µÇ°í Àִ Ư¼öÇÑ Çü½ÄÀÇ ÀÎÁõ¼¸¦ ÀÌ¿ëÇϱâ À§Çؼ
¸®ÅÏµÈ ÄÚ·¹Å©¼ÇºäÀÇ °¢ ¿ä¼Ò¸¦ ´ëÀÀÇÏ´Â ÀÎÁõ¼
Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾îÀÌ ÀÎÁõ¼
ÆÑÅ丮°¡ X. 509 ÀÎÁõ¼¸¦ ±¸ÇöÇÏ´Â °æ¿ì, ¸®ÅÏµÈ Ä÷º¼Ç³»ÀÇ ¿ä¼Ò¸¦ X509Certificate Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù.
X. 509 ÀÎÁõ¼
·Î »ç¿ëÇÏ´Â ÀÎÁõ¼
ÆÑÅ丮ÀÇ °æ¿ì, inStream¿¡´Â generateCertificate ·Î ¼³¸íµÇ°í ÀÖ´Â Çü½ÄÀÇ, DER ·Î encode µÈ ÀÏ·ÃÀÇ ÀÎÁõ¼°¡ Æ÷ÇԵ˴ϴÙ. ¶Ç, inStream¿¡´Â PKCS#7 Áõ¸í ¿¬¼â°¡ Æ÷ÇԵ˴ϴÙ. À̰ÍÀº PKCS#7 SignedData °´Ã¼À̸ç, »óÀ§ Çʵå´Â certificates »ÓÀÔ´Ï´Ù. ƯÈ÷, ¼¸í°ú ³»¿ëÀº ¹«½ÃµË´Ï´Ù. ÀÌ Çü½ÄÀÇ °æ¿ì, º¹¼öÀÇ ÀÎÁõ¼¸¦ 1ȸ¿¡ ´Ù¿î·ÎµåÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀÎÁõ¼°¡ ¾ø´Â °æ¿ì´Â ºñ¾îÀÖ´Â Ä÷º¼ÇÀÌ ¸®Åϵ˴ϴÙ
.
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸²ÀÌ mark ¹× reset¸¦
Áö¿ø
Çϰí ÀÖÁö ¾Ê´Â °æ¿ì, ÀÌ ¸Þ¼µå´Â ÀÔ·Â ½ºÆ®¸² Àüü¸¦ »ç¿ëÇÕ´Ï´Ù.
inStream - ÀÎÁõ¼¸¦ °¡Áö´Â ÀÔ·Â ½ºÆ®¸²
CertificateException - ±¸¹® ºÐ¼® ¿¡·¯ÀÇ °æ¿ì
public final CRL generateCRL(InputStream inStream)
throws CRLException
inStream·Î
ºÎÅÍ ÀоÁø µ¥ÀÌÅ͸¦ »ç¿ëÇØ ÃʱâÈÇÕ´Ï´Ù.
ÀÌ ÀÎÁõ¼
ÆÑÅ丮¿¡ ÀÇÇØ Áö¿ø
µÇ°í Àִ Ư¼öÇÑ Çü½ÄÀÇ CRL¸¦ ÀÌ¿ëÇϱâ À§Çؼ
¸®ÅÏµÈ CRL °´Ã¼¸¦ ´ëÀÀÇÏ´Â CRL Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾îÀÌ ÀÎÁõ¼
ÆÑÅ丮°¡ X. 509 CRL¸¦ ±¸ÇöÇÏ´Â °æ¿ì, ¸®ÅÏµÈ CRL °´Ã¼¸¦ X509CRL Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù.
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸²ÀÌ mark ¹× reset¸¦
Áö¿ø
Çϰí ÀÖÁö ¾Ê´Â °æ¿ì, ÀÌ ¸Þ¼µå´Â ÀÔ·Â ½ºÆ®¸² Àüü¸¦ »ç¿ëÇÕ´Ï´Ù. ±×·¸Áö ¾ÊÀº °æ¿ì, ÀÌ ¸Þ¼µå°¡ ºÒ·Á °¥ ¶§¸¶´Ù CRL¸¦ 1°³
¼ÒºñÇØ, ÀÔ·Â ½ºÆ®¸²ÀÇ read À§Ä¡´Â °íÀ¯ÀÇ end-of-CRL ¸¶Ä¿ÀÇ ³ªÁß¿¡ ´ÙÀ½¿¡ »ç¿ë °¡´ÉÇÑ ¹ÙÀÌÆ®·Î ¼³Á¤µË´Ï´Ù. °íÀ¯ÀÇ end-of-CRL ¸¶Ä¿ (EOF ÀÌ¿Ü)°¡ ÀÔ·Â ½ºÆ®¸²ÀÇ µ¥ÀÌÅÍ¿¡ Æ÷ÇÔµÇÁö ¾Ê°í, CRL°¡ ±¸¹® ºÐ¼® µÈ ÈÄ¿¡ µ¥ÀÌÅͰ¡ °è¼ÓµÇ´Â °æ¿ì´Â CertificateException°¡ ¹ß»ý µË´Ï´Ù.
inStream - CRL µ¥ÀÌÅ͸¦ °¡Áö´Â ÀÔ·Â ½ºÆ®¸²
CRLException - ±¸¹® ºÐ¼® ¿¡·¯ÀÇ °æ¿ì
public final Collection <? extends CRL > generateCRLs(InputStream inStream)
throws CRLException
inStream·Î
ºÎÅÍ ÀоÁø CRL
ÄÚ·¹Å©¼Çºä¸¦ ¸®ÅÏÇÕ´Ï´Ù. ÄÚ·¹Å©¼Çºä´Â ºñ¾îÀÖ´Â °æ¿ìµµ ÀÖ½À´Ï´Ù.
ÀÌ ÀÎÁõ¼
ÆÑÅ丮¿¡ ÀÇÇØ Áö¿ø
µÇ°í Àִ Ư¼öÇÑ Çü½ÄÀÇ CRL¸¦ ÀÌ¿ëÇϱâ À§Çؼ
¸®ÅÏµÈ ÄÚ·¹Å©¼ÇºäÀÇ °¢ ¿ä¼Ò¸¦ ´ëÀÀÇÏ´Â CRL Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù. ¿¹¸¦ µé¾îÀÌ ÀÎÁõ¼
ÆÑÅ丮°¡ X. 509 CRL¸¦ ±¸ÇöÇÏ´Â °æ¿ì, ¸®ÅÏµÈ Ä÷º¼Ç³»ÀÇ ¿ä¼Ò¸¦ X509CRL Ŭ·¡½º¿¡ ÇüÅ ij½ºÆ® ÇÒ ¼ö ÀÖ½À´Ï´Ù.
X. 509 CRL
ÀÎÁõ¼
ÆÑÅ丮ÀÇ °æ¿ì´Â inStream¿¡´Â DER ·Î encode µÈ ÀÏ·ÃÀÇ CRL°¡ Æ÷ÇԵ˴ϴÙ. ¶Ç, inStream¿¡´Â PKCS#7 CRL ¼¼Æ®°¡ Æ÷ÇԵ˴ϴÙ. À̰ÍÀº PKCS#7 SignedData °´Ã¼·Î »óÀ§ Çʵå´Â crls »ÓÀÔ´Ï´Ù. ƯÈ÷, ¼¸í°ú ³»¿ëÀº ¹«½ÃµË´Ï´Ù. ÀÌ Çü½ÄÀÇ °æ¿ì, º¹¼öÀÇ CRL¸¦ 1ȸ¿¡ ´Ù¿î·ÎµåÇÒ ¼ö ÀÖ½À´Ï´Ù. CRL°¡ ¾ø´Â °æ¿ì´Â ºñ¾îÀÖ´Â Ä÷º¼ÇÀÌ ¸®Åϵ˴ϴÙ
.
ÁöÁ¤µÈ ÀÔ·Â ½ºÆ®¸²ÀÌ mark ¹× reset¸¦
Áö¿ø
Çϰí ÀÖÁö ¾Ê´Â °æ¿ì, ÀÌ ¸Þ¼µå´Â ÀÔ·Â ½ºÆ®¸² Àüü¸¦ »ç¿ëÇÕ´Ï´Ù.
inStream - CRL¸¦ °¡Áö´Â ÀÔ·Â ½ºÆ®¸²
CRLException - ±¸¹® ºÐ¼® ¿¡·¯ÀÇ °æ¿ì
|
JavaTM 2 Platform Standard Ed. 5.0 |
|||||||||
| ÀÌÀü Ŭ·¡½º ´ÙÀ½ Ŭ·¡½º | ÇÁ·¹ÀÓÀ¸·Î ÇÁ·¹ÀÓ ¾øÀÌ | |||||||||
| °³¿ä: NESTED | Çʵå | constructor | ¸Þ¼µå | »ó¼¼: Çʵå | »ý¼ºÀÚ | ¸Þ¼µå | |||||||||
Copyright 2004 Sun Microsystems, Inc. All rights reserved. Use is subject to license terms . Documentation Redistribution Policy µµ ÂüÁ¶ÇϽʽÿÀ.