Class SSLConfigurationProperties
- All Implemented Interfaces:
Closeable,AutoCloseable,org.apache.camel.spi.BootstrapCloseable
-
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionvoidclose()end()intbooleanbooleanvoidsetCertAlias(String certAlias) An optional certificate alias to use.voidsetCipherSuites(String cipherSuites) List of TLS/SSL cipher suite algorithm names.voidsetCipherSuitesExclude(String cipherSuitesExclude) Filters TLS/SSL cipher suites algorithms names.voidsetCipherSuitesInclude(String cipherSuitesInclude) Filters TLS/SSL cipher suites algorithms names.voidsetClientAuthentication(String clientAuthentication) Sets the configuration for server-side client-authentication requirementsvoidsetEnabled(boolean enabled) Enables SSL in your Camel application.voidsetKeyManagerAlgorithm(String keyManagerAlgorithm) Algorithm name used for creating the KeyManagerFactory.voidsetKeyManagerProvider(String keyManagerProvider) To use a specific provider for creating KeyManagerFactory.voidsetKeyStore(String keyStore) The key store to load.voidsetKeystorePassword(String keystorePassword) Sets the SSL Keystore password.voidsetKeyStoreProvider(String keyStoreProvider) To use a specific provider for creating KeyStore.voidsetKeyStoreType(String keyStoreType) The type of the key store to load.voidsetNamedGroups(String namedGroups) List of TLS/SSL named groups (key exchange groups).voidsetNamedGroupsExclude(String namedGroupsExclude) Filters TLS/SSL named groups.voidsetNamedGroupsInclude(String namedGroupsInclude) Filters TLS/SSL named groups.voidsetProvider(String provider) To use a specific provider for creating SSLContext.voidsetSecureRandomAlgorithm(String secureRandomAlgorithm) Algorithm name used for creating the SecureRandom.voidsetSecureRandomProvider(String secureRandomProvider) To use a specific provider for creating SecureRandom.voidsetSecureSocketProtocol(String secureSocketProtocol) The protocol for the secure sockets created by the SSLContext.voidsetSessionTimeout(int sessionTimeout) Timeout in seconds to use for SSLContext.voidsetSignatureSchemes(String signatureSchemes) List of TLS/SSL signature schemes.voidsetSignatureSchemesExclude(String signatureSchemesExclude) Filters TLS/SSL signature schemes.voidsetSignatureSchemesInclude(String signatureSchemesInclude) Filters TLS/SSL signature schemes.voidsetTrustAllCertificates(boolean trustAllCertificates) Allows to trust all SSL certificates without performing certificate validation.voidsetTrustStore(String trustStore) The trust store to load.voidsetTrustStorePassword(String trustStorePassword) Sets the SSL Truststore password.withCertAlias(String certAlias) An optional certificate alias to use.withCipherSuites(String cipherSuites) List of TLS/SSL cipher suite algorithm names.withCipherSuitesExclude(String cipherSuitesExclude) Filters TLS/SSL cipher suites algorithms names.withCipherSuitesInclude(String cipherSuitesInclude) Filters TLS/SSL cipher suites algorithms names.withClientAuthentication(String clientAuthentication) Sets the configuration for server-side client-authentication requirementswithEnabled(boolean enabled) Enables SSL in your Camel application.withKeyManagerAlgorithm(String keyManagerAlgorithm) Algorithm name used for creating the KeyManagerFactory.withKeyManagerProvider(String keyManagerProvider) To use a specific provider for creating KeyManagerFactory.withKeyStore(String keyStore) The keystore to load.withKeystorePassword(String keystorePassword) Sets the SSL Keystore password.withKeyStoreProvider(String keyStoreProvider) To use a specific provider for creating KeyStore.withKeyStoreType(String keyStoreType) The type of the key store to load.withNamedGroups(String namedGroups) List of TLS/SSL named groups (key exchange groups).withNamedGroupsExclude(String namedGroupsExclude) Filters TLS/SSL named groups.withNamedGroupsInclude(String namedGroupsInclude) Filters TLS/SSL named groups.withProvider(String provider) To use a specific provider for creating SSLContext.withSecureRandomAlgorithm(String secureRandomAlgorithm) Algorithm name used for creating the SecureRandom.withSecureRandomProvider(String secureRandomProvider) To use a specific provider for creating SecureRandom.withSecureSocketProtocol(String secureSocketProtocol) The optional protocol for the secure sockets created by the SSLContext.withSessionTimeoutCertAlias(int sessionTimeout) Timeout in seconds to use for SSLContext.withSignatureSchemes(String signatureSchemes) List of TLS/SSL signature schemes.withSignatureSchemesExclude(String signatureSchemesExclude) Filters TLS/SSL signature schemes.withSignatureSchemesInclude(String signatureSchemesInclude) Filters TLS/SSL signature schemes.withTrustAllCertificates(boolean trustAllCertificates) Allows to trust all SSL certificates without performing certificate validation.withTrustStore(String trustStore) The trust store to load.withTrustStorePassword(String trustStorePassword) Sets the SSL Truststore password.
-
Constructor Details
-
SSLConfigurationProperties
-
-
Method Details
-
end
-
close
public void close()- Specified by:
closein interfaceAutoCloseable- Specified by:
closein interfaceCloseable
-
isEnabled
public boolean isEnabled() -
setEnabled
public void setEnabled(boolean enabled) Enables SSL in your Camel application. -
getProvider
-
setProvider
To use a specific provider for creating SSLContext.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
getSecureSocketProtocol
-
setSecureSocketProtocol
The protocol for the secure sockets created by the SSLContext.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
getCertAlias
-
setCertAlias
An optional certificate alias to use. This is useful when the keystore has multiple certificates. -
getSessionTimeout
public int getSessionTimeout() -
setSessionTimeout
public void setSessionTimeout(int sessionTimeout) Timeout in seconds to use for SSLContext. The default is 24 hours. -
getCipherSuites
-
setCipherSuites
List of TLS/SSL cipher suite algorithm names. Multiple names can be separated by comma. -
getCipherSuitesInclude
-
setCipherSuitesInclude
Filters TLS/SSL cipher suites algorithms names.This filter is used for including algorithms that matches the naming pattern. Multiple names can be separated by comma.
Notice that if the cipherSuites option has been configured then the include/exclude filters are not in use.
-
getCipherSuitesExclude
-
setCipherSuitesExclude
Filters TLS/SSL cipher suites algorithms names.This filter is used for excluding algorithms that matches the naming pattern. Multiple names can be separated by comma.
Notice that if the cipherSuites option has been configured then the include/exclude filters are not in use.
-
getNamedGroups
-
setNamedGroups
List of TLS/SSL named groups (key exchange groups). Multiple names can be separated by comma.Named groups control which key exchange algorithms are available during the TLS handshake, including post-quantum hybrid groups such as X25519MLKEM768.
-
getNamedGroupsInclude
-
setNamedGroupsInclude
Filters TLS/SSL named groups.This filter is used for including named groups that match the naming pattern. Multiple names can be separated by comma.
Notice that if the namedGroups option has been configured then the include/exclude filters are not in use.
-
getNamedGroupsExclude
-
setNamedGroupsExclude
Filters TLS/SSL named groups.This filter is used for excluding named groups that match the naming pattern. Multiple names can be separated by comma.
Notice that if the namedGroups option has been configured then the include/exclude filters are not in use.
-
getSignatureSchemes
-
setSignatureSchemes
List of TLS/SSL signature schemes. Multiple names can be separated by comma.Signature schemes control which signature algorithms are available during the TLS handshake, including post-quantum signature algorithms such as ML-DSA.
-
getSignatureSchemesInclude
-
setSignatureSchemesInclude
Filters TLS/SSL signature schemes.This filter is used for including signature schemes that match the naming pattern. Multiple names can be separated by comma.
Notice that if the signatureSchemes option has been configured then the include/exclude filters are not in use.
-
getSignatureSchemesExclude
-
setSignatureSchemesExclude
Filters TLS/SSL signature schemes.This filter is used for excluding signature schemes that match the naming pattern. Multiple names can be separated by comma.
Notice that if the signatureSchemes option has been configured then the include/exclude filters are not in use.
-
getKeyStore
-
setKeyStore
The key store to load. The key store is by default loaded from classpath. If you must load from file system, then use file: as prefix. file:nameOfFile (to refer to the file system) classpath:nameOfFile (to refer to the classpath; default) http:uri (to load the resource using HTTP) ref:nameOfBean (to lookup an existing KeyStore instance from the registry, for example for testing and development). -
getKeyStoreType
-
setKeyStoreType
The type of the key store to load.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
getKeyStoreProvider
-
setKeyStoreProvider
To use a specific provider for creating KeyStore.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
getKeystorePassword
-
setKeystorePassword
Sets the SSL Keystore password. -
getTrustStore
-
setTrustStore
The trust store to load. The trust store is by default loaded from classpath. If you must load from file system, then use file: as prefix. file:nameOfFile (to refer to the file system) classpath:nameOfFile (to refer to the classpath; default) http:uri (to load the resource using HTTP) ref:nameOfBean (to lookup an existing KeyStore instance from the registry, for example for testing and development). -
getTrustStorePassword
-
setTrustStorePassword
Sets the SSL Truststore password. -
isTrustAllCertificates
public boolean isTrustAllCertificates() -
setTrustAllCertificates
public void setTrustAllCertificates(boolean trustAllCertificates) Allows to trust all SSL certificates without performing certificate validation. This can be used in development environment but may expose the system to security risks. Notice that if the trustAllCertificates option is set to true then the trustStore/trustStorePassword options are not in use. -
getKeyManagerAlgorithm
-
setKeyManagerAlgorithm
Algorithm name used for creating the KeyManagerFactory.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
getKeyManagerProvider
-
setKeyManagerProvider
To use a specific provider for creating KeyManagerFactory.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
getSecureRandomAlgorithm
-
setSecureRandomAlgorithm
Algorithm name used for creating the SecureRandom.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
getSecureRandomProvider
-
setSecureRandomProvider
To use a specific provider for creating SecureRandom.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
getClientAuthentication
-
setClientAuthentication
Sets the configuration for server-side client-authentication requirements -
withEnabled
Enables SSL in your Camel application. -
withProvider
To use a specific provider for creating SSLContext.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
withSecureSocketProtocol
The optional protocol for the secure sockets created by the SSLContext.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
withCertAlias
An optional certificate alias to use. This is useful when the keystore has multiple certificates. -
withSessionTimeoutCertAlias
Timeout in seconds to use for SSLContext. The default is 24 hours. -
withCipherSuites
List of TLS/SSL cipher suite algorithm names. Multiple names can be separated by comma. -
withCipherSuitesInclude
Filters TLS/SSL cipher suites algorithms names.This filter is used for including algorithms that matches the naming pattern. Multiple names can be separated by comma.
Notice that if the cipherSuites option has been configured then the include/exclude filters are not in use.
-
withCipherSuitesExclude
Filters TLS/SSL cipher suites algorithms names.This filter is used for excluding algorithms that matches the naming pattern. Multiple names can be separated by comma.
Notice that if the cipherSuites option has been configured then the include/exclude filters are not in use.
-
withNamedGroups
List of TLS/SSL named groups (key exchange groups). Multiple names can be separated by comma.Named groups control which key exchange algorithms are available during the TLS handshake, including post-quantum hybrid groups such as X25519MLKEM768.
-
withNamedGroupsInclude
Filters TLS/SSL named groups.This filter is used for including named groups that match the naming pattern. Multiple names can be separated by comma.
Notice that if the namedGroups option has been configured then the include/exclude filters are not in use.
-
withNamedGroupsExclude
Filters TLS/SSL named groups.This filter is used for excluding named groups that match the naming pattern. Multiple names can be separated by comma.
Notice that if the namedGroups option has been configured then the include/exclude filters are not in use.
-
withSignatureSchemes
List of TLS/SSL signature schemes. Multiple names can be separated by comma.Signature schemes control which signature algorithms are available during the TLS handshake, including post-quantum signature algorithms such as ML-DSA.
-
withSignatureSchemesInclude
Filters TLS/SSL signature schemes.This filter is used for including signature schemes that match the naming pattern. Multiple names can be separated by comma.
Notice that if the signatureSchemes option has been configured then the include/exclude filters are not in use.
-
withSignatureSchemesExclude
Filters TLS/SSL signature schemes.This filter is used for excluding signature schemes that match the naming pattern. Multiple names can be separated by comma.
Notice that if the signatureSchemes option has been configured then the include/exclude filters are not in use.
-
withKeyStore
The keystore to load. The keystore is by default loaded from classpath. If you must load from file system, then use file: as prefix. file:nameOfFile (to refer to the file system) classpath:nameOfFile (to refer to the classpath; default) http:uri (to load the resource using HTTP) ref:nameOfBean (to lookup an existing KeyStore instance from the registry, for example for testing and development). -
withKeyStoreType
The type of the key store to load.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
withKeyStoreProvider
To use a specific provider for creating KeyStore.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
withKeystorePassword
Sets the SSL Keystore password. -
withTrustStore
The trust store to load. The trust store is by default loaded from classpath. If you must load from file system, then use file: as prefix. file:nameOfFile (to refer to the file system) classpath:nameOfFile (to refer to the classpath; default) http:uri (to load the resource using HTTP) ref:nameOfBean (to lookup an existing KeyStore instance from the registry, for example for testing and development). -
withTrustStorePassword
Sets the SSL Truststore password. -
withTrustAllCertificates
Allows to trust all SSL certificates without performing certificate validation. This can be used in development environment but may expose the system to security risks. Notice that if the trustAllCertificates option is set to true then the trustStore/trustStorePassword options are not in use. -
withKeyManagerAlgorithm
Algorithm name used for creating the KeyManagerFactory.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
withKeyManagerProvider
To use a specific provider for creating KeyManagerFactory.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
withSecureRandomAlgorithm
Algorithm name used for creating the SecureRandom.See https://docs.oracle.com/en/java/javase/17/docs/specs/security/standard-names.html
-
withSecureRandomProvider
To use a specific provider for creating SecureRandom.The list of available providers returned by java.security.Security.getProviders() or null to use the highest priority provider implementing the secure socket protocol.
-
withClientAuthentication
Sets the configuration for server-side client-authentication requirements
-