Manages a keystore (database) of cryptographic keys, X.509 certificate chains, and trusted certificates.
SYNOPSIS
Sep 19, 2011 Enter key password for (RETURN if same as keystore password): PRESS RETURN KEY It is important to have the keystore password and the key password the same. This is done by pressing the RETURN KEY in the last step. This is necessary since Tomcat doesn't support having different passwords in the keystore and key. 'keytool -genkeypair' Command Examples - Generate Key Pair How to use the 'keytool -genkeypair' command? I want to generate a pair of public key and private key for myself. Here is an example of using 'keytool -genkeypair' command to generate a pair of public key and private key for yourself: C: Users fyicenter' Program Files java jre7 bin keytool' -genkey. Javalang.exception:key pair not generated, alias already exists and java.io.filenotfoundexception:debug.keystore Ask Question Asked 2 years, 5 months ago.
The keytool command interface has changed in Java SE 6. See the Changes Section for a detailed description. Note that previously defined commands are still supported.
DESCRIPTIONkeytool is a key and certificate management utility. It allows users to administer their own public/private key pairs and associated certificates for use in self-authentication (where the user authenticates himself/herself to other users/services) or data integrity and authentication services, using digital signatures. It also allows users to cache the public keys (in the form of certificates) of their communicating peers.
A certificate is a digitally signed statement from one entity (person, company, etc.), saying that the public key (and some other information) of some other entity has a particular value. (See Certificates.) When data is digitally signed, the signature can be verified to check the data integrity and authenticity. Integrity means that the data has not been modified or tampered with, and authenticity means the data indeed comes from whoever claims to have created and signed it.
keytool also enables users to administer secret keys used in symmetric encryption/decryption (e.g. DES).
keytool stores the keys and certificates in a keystore.
COMMAND AND OPTION NOTES
The various commands and their options are listed and described below. Note:
Option Defaults
Below are the defaults for various option values.
In generating a public/private key pair, the signature algorithm (-sigalg option) is derived from the algorithm of the underlying private key:
Please consult the Java Cryptography Architecture API Specification & Reference for a full list of -keyalg and -sigalg you can choose from.
Common Options
The
-v option can appear for all commands except -help . If it appears, it signifies 'verbose' mode; more information will be provided in the output.
There is also a
-Jjavaoption option that may appear for any command. If it appears, the specified javaoption string is passed through directly to the Java interpreter. This option should not contain any spaces. It is useful for adjusting the execution environment or memory usage. For a list of possible interpreter options, type java -h or java -X at the command line.
These options may appear for all commands operating on a keystore:
Comments are closed.
|
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |