forked from auth0/java-jwt
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathPemReader.java
More file actions
68 lines (57 loc) · 2.73 KB
/
PemReader.java
File metadata and controls
68 lines (57 loc) · 2.73 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
package com.auth0.jwt.pem;
import org.apache.commons.lang3.Validate;
import org.bouncycastle.jce.provider.BouncyCastleProvider;
import java.io.File;
import java.io.IOException;
import java.nio.file.Files;
import java.security.*;
import java.security.cert.X509Certificate;
import java.security.spec.InvalidKeySpecException;
import java.security.spec.PKCS8EncodedKeySpec;
import java.security.spec.X509EncodedKeySpec;
/**
* Read operations for PEM files
*/
public class PemReader {
static {
if (Security.getProvider(BouncyCastleProvider.PROVIDER_NAME) == null) {
Security.addProvider(new BouncyCastleProvider());
}
}
public static PrivateKey readPrivateKey(final String filePath) throws NoSuchProviderException, NoSuchAlgorithmException, IOException, InvalidKeySpecException {
Validate.notNull(filePath);
final KeyFactory factory = KeyFactory.getInstance("RSA", "BC");
final PrivateKey privateKey = readPrivateKeyFromFile(factory, filePath);
return privateKey;
}
public static PublicKey readPublicKey(final String filePath) throws NoSuchProviderException, NoSuchAlgorithmException, IOException, InvalidKeySpecException {
Validate.notNull(filePath);
final KeyFactory factory = KeyFactory.getInstance("RSA", "BC");
final PublicKey publicKey = readPublicKeyFromFile(factory, filePath);
return publicKey;
}
private static PrivateKey readPrivateKeyFromFile(final KeyFactory factory, final String filename) throws InvalidKeySpecException, IOException {
Validate.notNull(factory);
Validate.notNull(filename);
final PemFileReader pemFileReader = new PemFileReader(filename);
final byte[] content = pemFileReader.getPemObject().getContent();
final PKCS8EncodedKeySpec privKeySpec = new PKCS8EncodedKeySpec(content);
return factory.generatePrivate(privKeySpec);
}
private static PublicKey readPublicKeyFromFile(final KeyFactory factory, final String filename) throws InvalidKeySpecException, IOException {
Validate.notNull(factory);
Validate.notNull(filename);
final File file = new File(filename);
final byte[] data = Files.readAllBytes(file.toPath());
final X509Certificate cert = X509CertUtils.parse(new String(data));
if (cert != null) {
java.security.PublicKey publicKey = cert.getPublicKey();
return publicKey;
} else {
final PemFileReader pemFileReader = new PemFileReader(filename);
final byte[] content = pemFileReader.getPemObject().getContent();
final X509EncodedKeySpec pubKeySpec = new X509EncodedKeySpec(content);
return factory.generatePublic(pubKeySpec);
}
}
}