qq_32697113 2018-07-19 02:08 采纳率: 0%
浏览 988
已结题

tomcat配置客户端ssl证书

我这里远程调用https接口,通过mian方法直接调用可以调通;通过调用webservice接口再调用远程https接口,返回

400 No required SSL certificate was sent

400 Bad Request


No required SSL certificate was sent

WEBSERVER


客户端证书一般不都是java代码加载吗?代码如下:
public static HttpClient getInstance() throws Exception {
HttpClient client = new DefaultHttpClient();
String path = Thread.currentThread().getContextClassLoader().getResource(".").getPath();
System.out.println(path);
SSLContext ctx = SSLContext.getInstance("TLS");
KeyStore ks = KeyStore.getInstance("pkcs12");
ks.load(new FileInputStream(path+Dom4J.getDocumentValue("keyStore")), Dom4J.getDocumentValue("keyPassword").toCharArray());
System.out.println(path+Dom4J.getDocumentValue("keyStore"));
KeyManagerFactory kmf = KeyManagerFactory.getInstance("sunx509");
kmf.init(ks, Dom4J.getDocumentValue("keyPassword").toCharArray());
KeyStore ts = KeyStore.getInstance("jks");
ts.load(new FileInputStream(path+Dom4J.getDocumentValue("trustStore")), Dom4J.getDocumentValue("trustPassword").toCharArray());
System.out.println(path+Dom4J.getDocumentValue("trustStore"));
TrustManagerFactory tmf = TrustManagerFactory.getInstance("sunx509");
tmf.init(ts);
ctx.init(kmf.getKeyManagers(), new TrustManager[] { tm }, null);
SSLSocketFactory ssf = new SSLSocketFactory(ctx);
ssf.setHostnameVerifier(SSLSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER);
ClientConnectionManager ccm = client.getConnectionManager();
SchemeRegistry sr = ccm.getSchemeRegistry();
sr.register(new Scheme("https", ssf, 8443));
client = new DefaultHttpClient(ccm, client.getParams());
return client;
}
  • 写回答

3条回答 默认 最新

  • xcgh 2018-07-19 02:51
    关注
    评论

报告相同问题?

悬赏问题

  • ¥15 matlab有关常微分方程的问题求解决
  • ¥15 perl MISA分析p3_in脚本出错
  • ¥15 k8s部署jupyterlab,jupyterlab保存不了文件
  • ¥15 ubuntu虚拟机打包apk错误
  • ¥199 rust编程架构设计的方案 有偿
  • ¥15 回答4f系统的像差计算
  • ¥15 java如何提取出pdf里的文字?
  • ¥100 求三轴之间相互配合画圆以及直线的算法
  • ¥100 c语言,请帮蒟蒻写一个题的范例作参考
  • ¥15 名为“Product”的列已属于此 DataTable