Java keystore vs truststore

A keystore contains private/public key pairs. Private key should be kept private and never be given out. Public keys aka certificates can be exported and send to whoever needs them.

A truststore contains public keys aka certificates from other parties that you expect to communicate with, or from Certificate Authorities that you trust to identify other parties.

This entry was posted in java, ssl. Bookmark the permalink.