Package de.xima.fc.certificate.ms.impl
Class CRLCheckingService
- java.lang.Object
-
- de.xima.fc.cryptography.BouncyCastleSupport
-
- de.xima.fc.certificate.ms.impl.CRLCheckingService
-
@ApplicationScoped public class CRLCheckingService extends BouncyCastleSupport
Service for checking the revocation status of X.509 certificates using CRLs (Certificate Revocation Lists). This service caches CRLs to reduce network overhead and supports configurable refresh periods.
-
-
Constructor Summary
Constructors Constructor Description CRLCheckingService()
-
Method Summary
All Methods Instance Methods Concrete Methods Modifier and Type Method Description booleanisRevoked(X509Certificate cert)Checks if a given X.509 certificate is revoked by consulting its CRL distribution points.-
Methods inherited from class de.xima.fc.cryptography.BouncyCastleSupport
buildSignedCertificate, createCMSContentEncryptorBuilder, createContentSigner, createJceKeyTransRecipientInfoGenerator, createKeyFactory, createKeyPairGenerator, createKeyStore, createOpenSSLPKCS8DecryptorProviderBuilder, createPEMKeyConverter, createSignature, createX509CertificateConverter, createX509CertificateFactory
-
-
-
-
Method Detail
-
isRevoked
public boolean isRevoked(X509Certificate cert) throws FcCertificateManagementException
Checks if a given X.509 certificate is revoked by consulting its CRL distribution points.- Parameters:
cert- The X.509 certificate to check.- Returns:
- true if the certificate is revoked, false otherwise.
- Throws:
FcCertificateManagementException- If there is an issue with CRL processing or retrieval.
-
-