1 /*
2  * Copyright (C) 2011 The Android Open Source Project
3  *
4  * Licensed under the Apache License, Version 2.0 (the "License");
5  * you may not use this file except in compliance with the License.
6  * You may obtain a copy of the License at
7  *
8  *      http://www.apache.org/licenses/LICENSE-2.0
9  *
10  * Unless required by applicable law or agreed to in writing, software
11  * distributed under the License is distributed on an "AS IS" BASIS,
12  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  * See the License for the specific language governing permissions and
14  * limitations under the License.
15  */
16 package android.security;
17 
18 import android.content.pm.ParceledListSlice;
19 
20 /**
21  * Caller is required to ensure that {@link KeyStore#unlock
22  * KeyStore.unlock} was successful.
23  *
24  * @hide
25  */
26 interface IKeyChainService {
27     // APIs used by KeyChain
requestPrivateKey(String alias)28     String requestPrivateKey(String alias);
getCertificate(String alias)29     byte[] getCertificate(String alias);
getCaCertificates(String alias)30     byte[] getCaCertificates(String alias);
31 
32     // APIs used by CertInstaller
installCaCertificate(in byte[] caCertificate)33     void installCaCertificate(in byte[] caCertificate);
34 
35     // APIs used by DevicePolicyManager
installKeyPair(in byte[] privateKey, in byte[] userCert, in byte[] certChain, String alias)36     boolean installKeyPair(in byte[] privateKey, in byte[] userCert, in byte[] certChain, String alias);
removeKeyPair(String alias)37     boolean removeKeyPair(String alias);
38 
39     // APIs used by Settings
deleteCaCertificate(String alias)40     boolean deleteCaCertificate(String alias);
reset()41     boolean reset();
getUserCaAliases()42     ParceledListSlice getUserCaAliases();
getSystemCaAliases()43     ParceledListSlice getSystemCaAliases();
containsCaAlias(String alias)44     boolean containsCaAlias(String alias);
getEncodedCaCertificate(String alias, boolean includeDeletedSystem)45     byte[] getEncodedCaCertificate(String alias, boolean includeDeletedSystem);
getCaCertificateChainAliases(String rootAlias, boolean includeDeletedSystem)46     List<String> getCaCertificateChainAliases(String rootAlias, boolean includeDeletedSystem);
47 
48     // APIs used by KeyChainActivity
setGrant(int uid, String alias, boolean value)49     void setGrant(int uid, String alias, boolean value);
hasGrant(int uid, String alias)50     boolean hasGrant(int uid, String alias);
51 }
52