Java library for SPIFFE support
Go to file
Max Lambrecht bee7627afa Minor: fixing gradle warnings
Signed-off-by: Max Lambrecht <maxlambrecht@gmail.com>
2020-06-09 09:04:55 -03:00
gradle/wrapper Update gradle-wrapper version to latest: 6.5 2020-06-08 15:08:27 -03:00
java-spiffe-core Refactor BundleSource interfaces to have a single parameterized interface for both X509 and JWT bundles. 2020-06-08 14:56:51 -03:00
java-spiffe-helper Java Spiffe Helper implementation 2020-06-04 10:19:19 -03:00
java-spiffe-provider Minor: fixing gradle warnings 2020-06-09 09:04:55 -03:00
.gitignore First commit 2018-05-28 12:39:13 -03:00
LICENSE Adding LICENSE 2018-08-22 10:53:38 -03:00
README.md Java Spiffe Helper implementation 2020-06-04 10:19:19 -03:00
build.gradle Minor: fixing gradle warnings 2020-06-09 09:04:55 -03:00
gradlew First commit 2018-05-28 12:39:13 -03:00
gradlew.bat First commit 2018-05-28 12:39:13 -03:00
lombok.config Adding utility methods for generating x509 certificates for testing purposes. 2020-05-22 09:31:32 -03:00
settings.gradle [WIP]-Define v2 interface, refactor in modules 2020-04-10 14:21:27 -03:00

README.md

JAVA-SPIFFE library

Overview

The JAVA-SPIFFE library provides functionality to interact with the Workload API to fetch X.509 and JWT SVIDs and Bundles, and a Java Security Provider implementation to be plugged into the Java Security architecture. This is essentially a X.509-SVID based KeyStore and TrustStore implementation that handles the certificates in memory and receives the updates asynchronously from the Workload API. The KeyStore handles the Certificate chain and Private Key to prove identity in a TLS connection, and the TrustStore handles the trusted bundles (supporting federated bundles) and performs peer's certificate and SPIFFE ID verification.

This library is composed of three modules:

java-spiffe-core: core functionality to interact with the Workload API, and to process and validate X.509 and JWT SVIDs and bundles.

java-spiffe-provider: Java Provider implementation.

java-spiffe-helper: Helper to store X.509 SVIDs and Bundles in Java Keystores in disk.

Supports Java 8+

Build the JARs

 $ ./gradlew build
 
 BUILD SUCCESSFUL 

jar files are placed in build/libs in each module.