> For the complete documentation index, see [llms.txt](https://vault.koudingspawn.de/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://vault.koudingspawn.de/supported-secret-types/secret-type-certjks.md).

# Secret Type - CERTJKS

The CERTJKS-Type is the same as the [CERT-Type](/supported-secret-types/secret-type-cert.md). The only difference is that it converts the saved Certificate into a Java Key Store.

### How To

First please read the part of [CERT-TYPE](/supported-secret-types/secret-type-cert.md), because the Vault-CRD expects the Certificate in a specific format.

After this you can create the following Vault resource in Kubernetes:

```yaml
apiVersion: "koudingspawn.de/v1"
kind: Vault
metadata:
  name: test-certjks
spec:
  path: "secret/test-url.example.com"
  type: "CERTJKS"
```

This will generate the Vault resource and also the secret:

```
$ kubectl get vault test-certjks
NAME           AGE
test-certjks   8d
```

```
$ kubectl get secret test-certjks
NAME           TYPE      DATA      AGE
test-certjks   Opaque    1         8d
```

By default the Key Store is saved in the key.jks path. You can change it with the [jksConfiguration](/supported-secret-types/secret-type-pkijks.md#jksconfiguration) as described in [PKIJKS](/supported-secret-types/secret-type-pkijks.md#jksconfiguration).

### Change Adjustment Callback

For more details please see [Change Detection](/change-detection.md)!
