All Downloads are FREE. Search and download functionalities are using the official Maven repository.

net.jxta.impl.shell.bin.pse.createkey Maven / Gradle / Ivy

Go to download

The JXTA Shell is a sample application that demonstrates key concepts of JXTA JXSE. The JXTA Shell enables users to interact with the JXTA platform through a command-line interpreter. Much like the UNIX® shell, the JXTA Shell is useful for accessing and managing core platform objects (peers, groups, pipes), debugging communications problems, checking the status of peers and/or peer groups, and communicating with other JXTA services and applications. As in UNIX®, the JXTA shell allows users to "pipe" shell commands together connecting commands "on-the-fly." Pipes in Project JXTA are useful for collecting information at one peer and perhaps processing the command at another.

The newest version!
/*
 * Copyright (c) 2001 Sun Microsystems, Inc.  All rights reserved.
 *
 * Redistribution and use in source and binary forms, with or without
 * modification, are permitted provided that the following conditions
 * are met:
 *
 * 1. Redistributions of source code must retain the above copyright
 *    notice, this list of conditions and the following disclaimer.
 *
 * 2. Redistributions in binary form must reproduce the above copyright
 *    notice, this list of conditions and the following disclaimer in
 *    the documentation and/or other materials provided with the
 *    distribution.
 *
 * 3. The end-user documentation included with the redistribution,
 *    if any, must include the following acknowledgment:
 *       "This product includes software developed by the
 *       Sun Microsystems, Inc. for Project JXTA."
 *    Alternately, this acknowledgment may appear in the software itself,
 *    if and wherever such third-party acknowledgments normally appear.
 *
 * 4. The names "Sun", "Sun Microsystems, Inc.", "JXTA" and "Project JXTA" must
 *    not be used to endorse or promote products derived from this
 *    software without prior written permission. For written
 *    permission, please contact Project JXTA at http://www.jxta.org.
 *
 * 5. Products derived from this software may not be called "JXTA",
 *    nor may "JXTA" appear in their name, without prior written
 *    permission of Sun.
 *
 * THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESSED OR IMPLIED
 * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
 * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
 * DISCLAIMED.  IN NO EVENT SHALL SUN MICROSYSTEMS OR
 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
 * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
 * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
 * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
 * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
 * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
 * SUCH DAMAGE.
 * ====================================================================
 *
 * This software consists of voluntary contributions made by many
 * individuals on behalf of Project JXTA.  For more
 * information on Project JXTA, please see
 * .
 *
 * This license is based on the BSD license adopted by the Apache Foundation.
 *
 * $Id: createkey.java,v 1.7 2007/02/09 23:12:41 hamada Exp $
 */

package net.jxta.impl.shell.bin.pse;

import net.jxta.id.ID;
import net.jxta.id.IDFactory;
import net.jxta.impl.membership.pse.PSECredential;
import net.jxta.impl.membership.pse.PSEMembershipService;
import net.jxta.impl.membership.pse.PSEUtils;
import net.jxta.impl.shell.GetOpt;
import net.jxta.impl.shell.ShellApp;
import net.jxta.impl.shell.ShellEnv;
import net.jxta.impl.shell.ShellObject;
import net.jxta.membership.MembershipService;
import net.jxta.protocol.ModuleImplAdvertisement;

import java.io.IOException;
import java.net.URI;
import java.net.URISyntaxException;
import java.security.KeyStoreException;
import java.security.PrivateKey;
import java.security.cert.Certificate;
import java.security.cert.X509Certificate;
import java.util.ArrayList;
import java.util.Arrays;
import java.util.List;

/**
 * PSE.createkey
 */
public class createkey extends ShellApp {

    /**
     * {@inheritDoc}
     */
    public int startApp(String[] argv) {
        ShellEnv env = getEnv();
        String issuerEnvName = null;
        String createID;
        String subjectCN;
        String createPass;

        GetOpt options = new GetOpt(argv, 0, "i:");

        while (true) {
            int option;
            try {
                option = options.getNextOption();
            } catch (IllegalArgumentException badopt) {
                consoleMessage("Illegal argument :" + badopt);
                return syntaxError();
            }

            if (-1 == option) {
                break;
            }

            switch (option) {

                case'i':
                    issuerEnvName = options.getOptionArg();
                    break;

                default:
                    consoleMessage("Unrecognized option");
                    return syntaxError();
            }
        }

        subjectCN = options.getNextParameter();

        if (null == subjectCN) {
            consoleMessage("Missing  parameter");
            return syntaxError();
        }

        createID = options.getNextParameter();

        if (null == createID) {
            consoleMessage("Missing  parameter");
            return syntaxError();
        }

        createPass = options.getNextParameter();

        if (null == createPass) {
            consoleMessage("Missing  parameter");
            return syntaxError();
        }

        if (null != options.getNextParameter()) {
            consoleMessage("Unsupported parameter");
            return syntaxError();
        }

        MembershipService membership = getGroup().getMembershipService();

        if (!(membership instanceof PSEMembershipService)) {
            ModuleImplAdvertisement mia = (ModuleImplAdvertisement) membership.getImplAdvertisement();

            consoleMessage("Group membership service is not PSE. (" + mia.getDescription() + ")");
            return ShellApp.appMiscError;
        }

        PSEMembershipService pse = (PSEMembershipService) membership;

        if (null == pse.getDefaultCredential()) {
            consoleMessage("Key store has not been opened.");
            return ShellApp.appMiscError;
        }

        try {
            PSEUtils.IssuerInfo issuer = null;
            X509Certificate[] issuerChain = new X509Certificate[0];

            if (null != issuerEnvName) {
                ShellObject issuerEnv = env.get(issuerEnvName);

                if (null == issuerEnv) {
                    consoleMessage("Issuer environment variable not found.");
                    return ShellApp.appMiscError;
                }

                if (!PSECredential.class.isAssignableFrom(issuerEnv.getObjectClass())) {
                    consoleMessage("Credential is not a PSE credential.");
                    return ShellApp.appMiscError;
                }

                PSECredential cred = (PSECredential) issuerEnv.getObject();

                issuerChain = cred.getCertificateChain();

                PrivateKey issuerKey = null;

                try {
                    issuerKey = cred.getPrivateKey();
                } catch (IllegalStateException notLocal) {
                    //ignored
                }

                if (null == issuerKey) {
                    consoleMessage("Credential is not a local login credential.");
                    return ShellApp.appMiscError;
                }

                issuer = new PSEUtils.IssuerInfo();

                issuer.cert = issuerChain[0];
                issuer.subjectPkey = issuerKey;
            }

            PSEUtils.IssuerInfo info = PSEUtils.genCert(subjectCN, issuer);

            List chain = new ArrayList(Arrays.asList(issuerChain));
            chain.add(0, info.cert);

            ID createid;

            try {
                URI idURL = new URI(createID);
                createid = IDFactory.fromURI(idURL);
            } catch (URISyntaxException badID) {
                printStackTrace("Bad ID", badID);
                return ShellApp.appMiscError;
            }

            pse.getPSEConfig().setKey(createid, 
                    chain.toArray(new Certificate[chain.size()]),
                    info.subjectPkey,
                    createPass.toCharArray());
        } catch (KeyStoreException failure) {
            printStackTrace("KeyStore failure while printing keys", failure);
            return ShellApp.appMiscError;
        } catch (IOException failure) {
            printStackTrace("IO failure while printing keys", failure);
            return ShellApp.appMiscError;
        }

        return ShellApp.appNoError;
    }

    private int syntaxError() {
        consoleMessage("Usage: pse.createkey [-i ]   ");
        return ShellApp.appParamError;
    }

    /**
     * {@inheritDoc}
     */
    @Override
    public String getDescription() {
        return "Creates a key in the PSE key store";
    }

    /**
     * {@inheritDoc}
     */
    @Override
    public void help() {
        println("NAME");
        println("     pse.createkey  - " + getDescription());
        println(" ");
        println("SYNOPSIS");
        println(" ");
        println("     pse.createkey [-i ]   ");
        println(" ");
        println("         Subject CN of the certificate to be created.");
        println("              ID of the key to be created.");
        println("        Password of the key to be created.");
        println(" ");
        println("OPTIONS");
        println(" ");
        println("     [-i ]  The credential of the key which will ");
        println("                        be the issuer of the new key.");
        println(" ");
        println("DESCRIPTION");
        println(" ");
        println("Creates a new key in the PSE key store used by the membership ");
        println("service within the current group.");
        println(" ");
        println("EXAMPLE");
        println(" ");
        println("    JXTA> pse.createkey mike urn:jxta:uuid-59616261646162614A78746150325033CACD56AE273E448CB25E8DA42C2BD46903 secret");
        println(" ");
        println(" ");
        println("SEE ALSO");
        println("     pse.certs pse.keys pse.erase");
    }
}




© 2015 - 2024 Weber Informatics LLC | Privacy Policy