Certificate Data Extractor Task
This task can be used to retrieve information encoded in the certificate and write it to the user record so the information can be used in search criteria, queries or be displayed more easily in the admin tool.
The certificate data read from the record must be the base-64 encoded binary representation of an X.509 ASN.1 structure. It also can be only the TBS-part ("to-be-signed part") of the certificate.
credentialPersister) The returned credentials must either contain the certificate data in the string credential field or in one of the context data fields. In the latter case, the name of the context data field containing the certificate data must be specified in property "certificate-property".
Make sure the persister is able to store the target field(s), i.e. the field(s) where the extracted data is stored. It is usally necessary to list these fields in the context data container.
credentialIterator) It is usually a good idea to already include a "not-null"-check on the certificate data and "null"-checks in the fields where the extracted data is stored. Like this only the records with missing (i.e. not yet processed) data are processed.
certificateProperty) isTbsData) mapping)
type: CertificateDataExtractorTask
id: CertificateDataExtractorTask-xxxxxx
displayName:
comment:
properties:
certificateProperty:
credentialIterator:
credentialPersister:
isTbsData: false
mapping: