Package com.ibm.websphere.ssl
Class Constants
java.lang.Object
com.ibm.websphere.ssl.Constants
This contains most of the constants used for the SSL component.
- Since:
- WAS 7.0
-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final Stringstatic final StringCONFIG STATEstatic final Stringstatic final StringCONNECTION INFO PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringDefault KeyStore Suffixstatic final StringMISCELLANEOUS CONSTANTSstatic final StringDefault Certificate Aliasesstatic final Stringstatic final Stringstatic final Stringstatic final StringAlias used when finding javax.net.ssl.* System propertiesstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringINBOUND ENDPOINT CONSTANTSstatic final Stringstatic final Stringstatic final StringOUTBOUND ENDPOINT CONSTANTSstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringPROVIDER CONSTANTSstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringKEYSTORE TYPE CONSTANTSstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringSSL PROTOCOL CONSTANTSstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringz/OS Keyring URI'sstatic final Stringstatic final StringSECURITY LEVEL CONSTANTSstatic final Stringstatic final Stringstatic final StringSELECTION TYPEstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringSOCKET FACTORY IMPLEMENTATIONSstatic final Stringstatic final StringDefault Certificate Typesstatic final StringSSL V2 cipher specificationsstatic final StringSSL V2 cipher specificationsstatic final StringSSL V2 cipher specificationsstatic final StringSSL V2 cipher specificationsstatic final StringSSL V2 cipher specificationsstatic final StringSSL V2 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final StringSSL V3 cipher specificationsstatic final Stringstatic final StringWAS SSL PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringJSSE KEYSTORE PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringCRYPTO PROPERTIESstatic final StringOLD CRYPTO PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringJSSE TRUSTSTORE PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringJSSE SYSTEM PROPERTIESstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final Stringstatic final StringFIPS CONSTANTSstatic final String -
Method Summary
Modifier and TypeMethodDescriptionstatic String[]adjustSupportedCiphersToSecurityLevel(String[] supportedCiphers, String securityLevel) This method adjusts the supported ciphers to include those appropriate to the security level (HIGH, MEDIUM, LOW).static StringconvertCipherListToString(String[] cipherList) This method converts the cipher suite String[] to a space-delimited String.static booleanisSkipHostnameVerificationForHosts(String remoteHost, String skipHostList) https://datatracker.ietf.org/doc/html/rfc2830#section-3.6 The "*" wildcard character is allowed.booleanresolveDisableHostnameVerification(String targetHostname, String disabledVerifyHostname, Properties sslProps)
-
Field Details
-
SYSTEM_SSLPROP_KEY_STORE
JSSE SYSTEM PROPERTIES- See Also:
-
SYSTEM_SSLPROP_KEY_STORE_PASSWORD
- See Also:
-
SYSTEM_SSLPROP_KEY_STORE_TYPE
- See Also:
-
SYSTEM_SSLPROP_KEY_STORE_PROVIDER
- See Also:
-
SYSTEM_SSLPROP_TRUST_STORE
- See Also:
-
SYSTEM_SSLPROP_TRUST_STORE_PASSWORD
- See Also:
-
SYSTEM_SSLPROP_TRUST_STORE_PROVIDER
- See Also:
-
SYSTEM_SSLPROP_TRUST_STORE_TYPE
- See Also:
-
SSLPROP_ALIAS
WAS SSL PROPERTIES- See Also:
-
SSLPROP_SSLTYPE
- See Also:
-
SSLPROP_EXPIRED_WARNING
- See Also:
-
SSLPROP_ENABLED_CIPHERS
- See Also:
-
SSLPROP_KEY_MANAGER
- See Also:
-
SSLPROP_PROTOCOL
- See Also:
-
SSLPROP_CLIENT_AUTHENTICATION
- See Also:
-
SSLPROP_CLIENT_AUTHENTICATION_SUPPORTED
- See Also:
-
SSLPROP_CONTEXT_PROVIDER
- See Also:
-
SSLPROP_SECURITY_LEVEL
- See Also:
-
SSLPROP_TRUST_MANAGER
- See Also:
-
SSLPROP_CUSTOM_TRUST_MANAGERS
- See Also:
-
SSLPROP_CUSTOM_KEY_MANAGER
- See Also:
-
SSLPROP_VALIDATION_ENABLED
- See Also:
-
SSLPROP_DYNAMIC_SELECTION_INFO
- See Also:
-
SSLPROP_EXCHANGE_SIGNER_PROMPT
- See Also:
-
SSLPROP_USE_INHERITABLE_THREAD_LOCAL
- See Also:
-
SSLPROP_CONFIGURL_LOADED_FROM
- See Also:
-
SSLPROP_DEFAULT_ALIAS
- See Also:
-
SSLPROP_URL_HOSTNAME_VERIFICATION
- See Also:
-
SSLPROP_SKIP_DEFAULT_TM_WHEN_CUSTOM_TM_DEFINED
- See Also:
-
SSLPROP_HOSTNAME_VERIFICATION
- See Also:
-
SSLPROP_SKIP_HOSTNAME_VERIFICATION_FOR_HOSTS
- See Also:
-
SSLPROP_USE_DEFAULTCERTS
- See Also:
-
SSLPROP_ENFORCE_CIPHER_ORDER
- See Also:
-
SSLPROP_AUTOACCEPT_SERVER_CERT
- See Also:
-
SSLPROP_AUTOSTORE_SERVER_CERT
- See Also:
-
SSLPROP_AUTOACCEPT_SERVER_CERT_FROM
- See Also:
-
SSLPROP_AUTOSTORE_SERVER_CERT_FROM
- See Also:
-
SSLPROP_DEFAULT_CERTREQ_ALIAS
- See Also:
-
SSLPROP_DEFAULT_CERTREQ_SUBJECTDN
- See Also:
-
SSLPROP_DEFAULT_CERTREQ_DAYS
- See Also:
-
SSLPROP_DEFAULT_CERTREQ_KEYSIZE
- See Also:
-
SSLPROP_ROOT_CERT_SUBJECTDN
- See Also:
-
SSLPROP_ROOT_CERT_DAYS
- See Also:
-
SSLPROP_ROOT_CERT_ALIAS
- See Also:
-
SSLPROP_ROOT_CERT_KEYSIZE
- See Also:
-
SSLPROP_JSSE2_CHECK_REVOCATION
- See Also:
-
SSLPROP_ENABLE_CRLDP
- See Also:
-
SSLPROP_NULL_ENABLE_CRLDP
- See Also:
-
SSLPROP_LDAP_CERT_STORE_HOST
- See Also:
-
SSLPROP_LDAP_CERT_STORE_PORT
- See Also:
-
SSLPROP_OCSP_ENABLE
- See Also:
-
SSLPROP_OCSP_RESPONDER_URL
- See Also:
-
SSLPROP_OCSP_RESPONDER_CERT_SUBJECT_NAME
- See Also:
-
SSLPROP_OCSP_RESPONDER_CERT_ISSUER_NAME
- See Also:
-
SSLPROP_OCSP_RESPONDER_CERT_SERIAL_NUMBER
- See Also:
-
SSLPROP_KEY_STORE_NAME
JSSE KEYSTORE PROPERTIES- See Also:
-
SSLPROP_KEY_STORE
- See Also:
-
SSLPROP_KEY_STORE_CLIENT_ALIAS
- See Also:
-
SSLPROP_KEY_STORE_SERVER_ALIAS
- See Also:
-
SSLPROP_KEY_STORE_PASSWORD
- See Also:
-
SSLPROP_KEY_STORE_TYPE
- See Also:
-
SSLPROP_KEY_STORE_PROVIDER
- See Also:
-
SSLPROP_KEY_STORE_CUSTOM_CLASS
- See Also:
-
SSLPROP_KEY_STORE_FILE_BASED
- See Also:
-
SSLPROP_KEY_STORE_HOST_LIST
- See Also:
-
SSLPROP_KEY_STORE_READ_ONLY
- See Also:
-
SSLPROP_KEY_STORE_INITIALIZE_AT_STARTUP
- See Also:
-
SSLPROP_KEY_STORE_CREATE_CMS_STASH
- See Also:
-
SSLPROP_KEY_STORE_USE_FOR_ACCELERATION
- See Also:
-
SSLPROP_KEY_STORE_SLOT
- See Also:
-
SSLPROP_TOKEN_CONFIG_FILE
CRYPTO PROPERTIES- See Also:
-
SSLPROP_TOKEN_ENABLED
OLD CRYPTO PROPERTIES- See Also:
-
SSLPROP_TOKEN_LIBRARY
- See Also:
-
SSLPROP_TOKEN_PASSWORD
- See Also:
-
SSLPROP_TOKEN_SLOT
- See Also:
-
SSLPROP_TOKEN_TYPE
- See Also:
-
SSLPROP_TRUST_STORE_NAME
JSSE TRUSTSTORE PROPERTIES- See Also:
-
SSLPROP_TRUST_STORE
- See Also:
-
SSLPROP_TRUST_STORE_PASSWORD
- See Also:
-
SSLPROP_TRUST_STORE_PROVIDER
- See Also:
-
SSLPROP_TRUST_STORE_TYPE
- See Also:
-
SSLPROP_TRUST_STORE_CUSTOM_CLASS
- See Also:
-
SSLPROP_TRUST_STORE_FILE_BASED
- See Also:
-
SSLPROP_TRUST_STORE_HOST_LIST
- See Also:
-
SSLPROP_TRUST_STORE_READ_ONLY
- See Also:
-
SSLPROP_TRUST_STORE_SLOT
- See Also:
-
SSLPROP_TRUST_STORE_INITIALIZE_AT_STARTUP
- See Also:
-
SSLPROP_TRUST_STORE_CREATE_CMS_STASH
- See Also:
-
SSLPROP_TRUST_STORE_USE_FOR_ACCELERATION
- See Also:
-
CONNECTION_INFO_DIRECTION
CONNECTION INFO PROPERTIES- See Also:
-
CONNECTION_INFO_REMOTE_HOST
- See Also:
-
CONNECTION_INFO_REMOTE_PORT
- See Also:
-
CONNECTION_INFO_ENDPOINT_NAME
- See Also:
-
CONNECTION_INFO_CERT_MAPPING_HOST
- See Also:
-
CONNECTION_INFO_IS_WEB_CONTAINER_INBOUND
- See Also:
-
KEYSTORE_TYPE_JKS
KEYSTORE TYPE CONSTANTS- See Also:
-
KEYSTORE_TYPE_JCEKS
- See Also:
-
KEYSTORE_TYPE_PKCS12
- See Also:
-
KEYSTORE_TYPE_JAVACRYPTO
- See Also:
-
KEYSTORE_TYPE_CMS
- See Also:
-
KEYSTORE_TYPE_ISERIES
- See Also:
-
KEYSTORE_TYPE_JCERACFKS
- See Also:
-
KEYSTORE_TYPE_RACFCRYPTO
- See Also:
-
KEYSTORE_TYPE_JCECCAKS
- See Also:
-
KEYSTORE_TYPE_JCECCARACFKS
- See Also:
-
KEYSTORE_TYPE_JCEHYBRIDRACFKS
- See Also:
-
SAFKEYRING_PREFIX
z/OS Keyring URI's- See Also:
-
SAFKEYRING_HW_PREFIX
- See Also:
-
DEFAULT_KEY_STORE
Default KeyStore Suffix- See Also:
-
DEFAULT_TRUST_STORE
- See Also:
-
DEFAULT_ROOT_STORE
- See Also:
-
DEFAULT_DELETED_STORE
- See Also:
-
DEFAULT_SIGNERS_STORE
- See Also:
-
RSA_TOKEN_KEY_STORE
- See Also:
-
RSA_TOKEN_TRUST_STORE
- See Also:
-
RSA_TOKEN_ROOT_STORE
- See Also:
-
SSL_CERTIFICATE_TYPE
Default Certificate Types- See Also:
-
RSA_CERTIFICATE_TYPE
- See Also:
-
DEFAULT_ROOT_CERTIFICATE_ALIAS
Default Certificate Aliases- See Also:
-
DEFAULT_ROOT_CERTIFICATE_ALIAS_ZOS
- See Also:
-
DEFAULT_CERTIFICATE_ALIAS
- See Also:
-
PROTOCOL_SSLV2
SSL PROTOCOL CONSTANTS- See Also:
-
PROTOCOL_SSLV3
- See Also:
-
PROTOCOL_TLSV1
- See Also:
-
PROTOCOL_TLS
- See Also:
-
PROTOCOL_SSL
- See Also:
-
PROTOCOL_SSL_TLS
- See Also:
-
PROTOCOL_SSL_TLS_V2
- See Also:
-
PROTOCOL_TLSV1_1
- See Also:
-
PROTOCOL_TLSV1_2
- See Also:
-
PROTOCOL_TLSV1_3
- See Also:
-
PROTOCOL_TLS_FIPS
- See Also:
-
SECURITY_LEVEL_HIGH
SECURITY LEVEL CONSTANTS- See Also:
-
SECURITY_LEVEL_MEDIUM
- See Also:
-
SECURITY_LEVEL_LOW
- See Also:
-
SECURITY_LEVEL_CUSTOM
- See Also:
-
IBMJCE
PROVIDER CONSTANTS- See Also:
-
IBMJCE_NAME
- See Also:
-
IBMJCEFIPS
- See Also:
-
IBMJCEPlusFIPS
- See Also:
-
IBMJCEFIPS_NAME
- See Also:
-
IBMJCEPlusFIPS_NAME
- See Also:
-
IBMJSSE2
- See Also:
-
IBMJSSE2_NAME
- See Also:
-
IBMJSSE_NAME
- See Also:
-
SUNJSSE_NAME
- See Also:
-
SUNJCE_NAME
- See Also:
-
IBMJSSEFIPS_NAME
- See Also:
-
IBMPKCS11Impl
- See Also:
-
IBMPKCS11Impl_NAME
- See Also:
-
IBMCMS
- See Also:
-
IBMCMS_NAME
- See Also:
-
DEFAULT_JCE_PROVIDER
- See Also:
-
IBMJCECCA_NAME
- See Also:
-
USE_FIPS
FIPS CONSTANTS- See Also:
-
FIPS_ENABLED
- See Also:
-
FIPS_JCEPROVIDERS
- See Also:
-
FIPS_JSSEPROVIDERS
- See Also:
-
USEFIPS_ENABLED
- See Also:
-
ENDPOINT_CSIV2_MUTUALAUTH
INBOUND ENDPOINT CONSTANTS- See Also:
-
ENDPOINT_CSIV2_SERVERAUTH
- See Also:
-
ENDPOINT_SOAP_CONNECTOR_ADDRESS
- See Also:
-
ENDPOINT_IPC_CONNECTOR_ADDRESS
- See Also:
-
ENDPOINT_ORB_SSL_LISTENER_ADDRESS
- See Also:
-
ENDPOINT_IIOP
OUTBOUND ENDPOINT CONSTANTS- See Also:
-
ENDPOINT_HTTP
- See Also:
-
ENDPOINT_SIP
- See Also:
-
ENDPOINT_JMS
- See Also:
-
ENDPOINT_BUS_CLIENT
- See Also:
-
ENDPOINT_BUS_TO_BUS
- See Also:
-
ENDPOINT_BUS_TO_WEBSPHERE_MQ
- See Also:
-
ENDPOINT_CLIENT_TO_WEBSPHERE_MQ
- See Also:
-
ENDPOINT_LDAP
- See Also:
-
ENDPOINT_ADMIN_IIOP
- See Also:
-
ENDPOINT_ADMIN_SOAP
- See Also:
-
ENDPOINT_ADMIN_IPC
- See Also:
-
ENDPOINT_WEBSERVICES_HTTP
- See Also:
-
ENDPOINT_WEBSERVICES_JMS
- See Also:
-
DEFAULT_SYSTEM_ALIAS
Alias used when finding javax.net.ssl.* System properties- See Also:
-
DEFAULT_TRUST_MANAGER
- See Also:
-
DEFAULT_KEY_MANAGER
- See Also:
-
SELECTION_TYPE_DIRECT
SELECTION TYPE- See Also:
-
SELECTION_TYPE_THREAD
- See Also:
-
SELECTION_TYPE_DYNAMIC
- See Also:
-
SOCKET_FACTORY_JSSE_DEFAULT
SOCKET FACTORY IMPLEMENTATIONS- See Also:
-
SERVER_SOCKET_FACTORY_JSSE_DEFAULT
- See Also:
-
SOCKET_FACTORY_WAS_DEFAULT
- See Also:
-
SERVER_SOCKET_FACTORY_WAS_DEFAULT
- See Also:
-
CONFIG_STATE_DELETED
CONFIG STATE- See Also:
-
CONFIG_STATE_CHANGED
- See Also:
-
DEFAULT_KEYSTORE_PASSWORD
MISCELLANEOUS CONSTANTS- See Also:
-
DEFAULT_CERT_EXPIRE_WARNING_DAYS
- See Also:
-
SSLTYPE_JSSE
- See Also:
-
SSLTYPE_SSSL
- See Also:
-
DIRECTION_INBOUND
- See Also:
-
DIRECTION_OUTBOUND
- See Also:
-
DIRECTION_UNKNOWN
- See Also:
-
TRUE
- See Also:
-
FALSE
- See Also:
-
SSL_UNKNOWN_CIPHER
- See Also:
-
SSL_CK_RC4_128_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_CK_RC4_128_EXPORT40_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_CK_RC2_128_CBC_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_CK_RC2_128_CBC_EXPORT40_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_CK_DES_64_CBC_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_CK_DES_192_EDE3_CBC_WITH_MD5
SSL V2 cipher specifications- See Also:
-
SSL_NULL_WITH_NULL_NULL
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_NULL_MD5
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_NULL_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_EXPORT_WITH_RC4_40_MD5
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_RC4_128_MD5
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_RC4_128_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_EXPORT_WITH_RC2_CBC_40_MD5
SSL V3 cipher specifications- See Also:
-
SSL_RSA_EXPORT_WITH_DES40_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_RSA_FIPS_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_DSS_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_DSS_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_RSA_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_RSA_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_DSS_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_DSS_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_RSA_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_RSA_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_EXPORT_WITH_DES40_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_WITH_RC4_128_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_DSS_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_RSA_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_RSA_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DHE_RSA_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_EXPORT_WITH_RC4_40_MD5
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_WITH_RC4_128_MD5
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_EXPORT_WITH_DES40_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_WITH_DES_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_WITH_3DES_EDE_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_WITH_AES_128_CBC_SHA
SSL V3 cipher specifications- See Also:
-
SSL_DH_anon_WITH_AES_256_CBC_SHA
SSL V3 cipher specifications- See Also:
-
MULTI_PROTOCOL_LIST
-
FIPS_140_2_PROTOCOLS
-
FIPS_140_3_PROTOCOLS
-
-
Method Details
-
adjustSupportedCiphersToSecurityLevel
public static String[] adjustSupportedCiphersToSecurityLevel(String[] supportedCiphers, String securityLevel) This method adjusts the supported ciphers to include those appropriate to the security level (HIGH, MEDIUM, LOW).- Parameters:
supportedCiphers-securityLevel-- Returns:
- String[]
-
convertCipherListToString
This method converts the cipher suite String[] to a space-delimited String.- Parameters:
cipherList-- Returns:
- String
-
resolveDisableHostnameVerification
public boolean resolveDisableHostnameVerification(String targetHostname, String disabledVerifyHostname, Properties sslProps) -
isSkipHostnameVerificationForHosts
https://datatracker.ietf.org/doc/html/rfc2830#section-3.6 The "*" wildcard character is allowed. If present, it applies only to the left-most name component.- Parameters:
String- host - target hostString- skipHostList - comma separated list of hostnames with hostname verification disabled, e.g. "hello.com, world.com"
-