Directory Services 7.3.5

File Based Trust Manager Provider

The file-based trust manager provider obtains the trusted certificates from a trust store file.

The trust store file can be in either JKS (the default Java key store format) or PKCS#12 (a standard certificate format) form.

Parent

The File Based Trust Manager Provider object inherits from Trust Manager Provider.

File Based Trust Manager Provider properties

You can use configuration expressions to set property values at startup time. For details, see Property value substitution.

Basic Properties Advanced Properties

enabled
trust-store-file
trust-store-pin
trust-store-type

java-class

Basic properties

Use the --advanced option to access advanced properties.

enabled

Synopsis

Indicate whether the Trust Manager Provider is enabled for use.

Default value

None

Allowed values

true

false

Multi-valued

No

Required

Yes

Admin action required

None

Advanced

No

Read-only

No

trust-store-file

Synopsis

Specifies the path to the file containing the trust information. It can be an absolute path or a path that is relative to the OpenDJ instance root.

Description

Changes to this configuration attribute take effect the next time that the trust manager is accessed.

Default value

None

Allowed values

An absolute path or a path that is relative to the OpenDJ directory server instance root.

Multi-valued

No

Required

Yes

Admin action required

None

Advanced

No

Read-only

No

trust-store-pin

Synopsis

Specifies the clear-text PIN needed to access the File Based Trust Manager Provider .

Default value

None

Allowed values

A string.

Multi-valued

No

Required

No

Admin action required

None

Changes to this property will take effect the next time that the File Based Trust Manager Provider is accessed.

Advanced

No

Read-only

No

trust-store-type

Synopsis

Specifies the format for the data in the trust store file.

Description

Valid values always include 'JKS' and 'PKCS12', but different implementations can allow other values as well. If no value is provided, then the JVM default value is used. Changes to this configuration attribute take effect the next time that the trust manager is accessed.

Default value

None

Allowed values

Any key store format supported by the Java runtime environment. The "JKS" and "PKCS12" formats are typically available in Java environments.

Multi-valued

No

Required

No

Admin action required

None

Advanced

No

Read-only

No

Advanced properties

Use the --advanced option to access advanced properties.

java-class

Synopsis

The fully-qualified name of the Java class that provides the File Based Trust Manager Provider implementation.

Default value

org.opends.server.extensions.FileBasedTrustManagerProvider

Allowed values

A Java class that extends or implements:

  • org.opends.server.api.TrustManagerProvider

Multi-valued

No

Required

Yes

Admin action required

None

Advanced

Yes

Read-only

No