client.encryption()
Cada método deste espaço de nomes: a sua assinatura, os seus parâmetros, o que devolve e um exemplo.
Métodos
The OpenPGP public keys that let senders seal mail to your addresses: list the ones you published, publish or rotate one, and look up the keys of recipients before sealing a message.
encryption().listKeys
List your published encryption keys
List<Map<String, Object>> listKeys(RequestOptions options)Returns every OpenPGP public key published for an address in this workspace, newest first, the Encryption page of the app. Retired keys are included, with revokedAt and revokedReason set, and the live key of each address has revokedAt null.
Published keys belong to a person. A key reads and publishes the keys of the workspace owner, and an access token those of the person who connected the app. A key limited to particular addresses lists only the keys of those addresses.
Parâmetros
options.apiKeyStringOverrides the client's API key for this call only.
Devolve
A list of maps, each with id, address, fingerprint, publicKey, algorithm, createdAt, revokedAt and revokedReason.
Exemplo
List<Map<String, Object>> keys = client.encryption().listKeys(); for (Map<String, Object> key : keys) { System.out.println(key.get("address") + " " + key.get("fingerprint") + " " + key.get("revokedAt"));}Notas
Only public keys travel through the API. The private key stays on the device that made it.
Também disponível em
encryption().publishKey
Publish a public key for one of your addresses
Map<String, Object> publishKey(Map<String, Object> body, RequestOptions options)Publishes an armored OpenPGP public key for one of your addresses, so that senders can seal mail to it, as Publish on the Encryption page does. The address has to be an address of this workspace on a verified domain, switched on, and one you may use.
An address keeps one live key. To rotate, pass the fingerprint of the live key as replaces: it is retired as the new key is published. Mail already sealed to the old key stays readable only with the old private key.
Published keys belong to a person. A key reads and publishes the keys of the workspace owner, and an access token those of the person who connected the app.
Parâmetros
body.addressStringObrigatórioThe address the key is for.
body.publicKeyStringObrigatórioThe armored OpenPGP PUBLIC KEY BLOCK, up to 64 KB.
body.fingerprintStringObrigatórioThe fingerprint of the key, 40 upper-case hexadecimal characters.
body.algorithmStringThe algorithm of the key, such as
ed25519, for display only.body.replacesStringThe fingerprint of the live key this one replaces, to rotate it.
options.apiKeyStringOverrides the client's API key for this call only.
Devolve
A map for the key, now live, with the same fields as each entry of encryption().listKeys.
Exemplo
String armored = Files.readString(Path.of("ana-public-key.asc"));Map<String, Object> key = client.encryption().publishKey(Body.of( "address", "[email protected]", "publicKey", armored, "fingerprint", "3F2A9C1B7E4D5F60A1B2C3D4E5F60718293A4B5C")); System.out.println(key.get("id") + " " + key.get("fingerprint"));Notas
With an OAuth access token it asks for a verification code: until the app has verified one, it is refused with 403
step_up_required. An API key is never asked.A second key while one is live, without
replaces, is 409key_already_published, and so is a key that was published for the address before. An address on a domain that is not verified yet is 409domain_not_verified, and an address you may not use is 403address_not_allowed.The SDK does not retry it.
Também disponível em
encryption().lookupKeys
Find the keys to seal mail to
List<Map<String, Object>> lookupKeys(RequestOptions options)Returns the live public keys published for each recipient address, the lookup the composer makes before it seals a message. An address with no key comes back with keys empty, so mail to it cannot be sealed. Only keys published by somebody who can read the address count.
Parâmetros
options.addressesString or List<String>ObrigatórioRecipient addresses, at most 51, as a list or one comma-separated string. They are sent comma-separated.
options.apiKeyStringOverrides the client's API key for this call only.
Devolve
A list of maps, one per address, each with address and keys, every key a map with fingerprint, publicKey and createdAt.
Exemplo
List<Map<String, Object>> found = client.encryption().lookupKeys(RequestOptions.of("addresses", List.of("[email protected]", "[email protected]"))); for (Map<String, Object> encryption : found) { System.out.println(encryption.get("address"));}Notas
A display name in angle brackets is read as its address.