| Package | Description | 
|---|---|
| java.security.cert | Provides classes and interfaces for parsing and managing
 certificates, certificate revocation lists (CRLs), and
 certification paths. | 
| Modifier and Type | Class | Description | 
|---|---|---|
| class  | X509CertSelectorA  CertSelectorthat selectsX509Certificatesthat
 match all specified criteria. | 
| Modifier and Type | Method | Description | 
|---|---|---|
| CertSelector | PKIXParameters. getTargetCertConstraints()Returns the required constraints on the target certificate. | 
| Modifier and Type | Method | Description | 
|---|---|---|
| abstract Collection<? extends Certificate> | CertStoreSpi. engineGetCertificates(CertSelector selector)Returns a  CollectionofCertificates that
 match the specified selector. | |
| Collection<? extends Certificate> | CertStore. getCertificates(CertSelector selector)Returns a  CollectionofCertificates that
 match the specified selector. | |
| void | PKIXParameters. setTargetCertConstraints(CertSelector selector)Sets the required constraints on the target certificate. | 
| Constructor | Description | 
|---|---|
| PKIXBuilderParameters(KeyStore keystore,
                     CertSelector targetConstraints)Creates an instance of  PKIXBuilderParametersthat
 populates the set of most-trusted CAs from the trusted
 certificate entries contained in the specifiedKeyStore. | |
| PKIXBuilderParameters(Set<TrustAnchor> trustAnchors,
                     CertSelector targetConstraints)Creates an instance of  PKIXBuilderParameterswith
 the specifiedSetof most-trusted CAs. | 
 Submit a bug or feature 
For further API reference and developer documentation, see Java SE Documentation. That documentation contains more detailed, developer-targeted descriptions, with conceptual overviews, definitions of terms, workarounds, and working code examples.
 Copyright © 1993, 2025, Oracle and/or its affiliates.  All rights reserved. Use is subject to license terms. Also see the documentation redistribution policy.