[jboss-jira] [JBoss JIRA] (WFLY-3483) Improve ability to use MS Windows keystore for the web servers ssl connector

Derek Horton (JIRA) issues at jboss.org
Wed Jun 11 13:00:39 EDT 2014


     [ https://issues.jboss.org/browse/WFLY-3483?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Derek Horton updated WFLY-3483:
-------------------------------

    Description: 
It is possible to configure the web ssl connector to use the Windows certificate keystore (access provided by the SunMSCAPI provider).  However, the JSSESocketFactory checks for a keystore file.  This check should likely be skipped when the connector is configured to use the Windows keystore.

Here is what the configuration looks like:
<connector name="https" protocol="HTTP/1.1" scheme="https" socket-binding="https" secure="true">
				 <ssl name="https" 
					key-alias="jbossweb" 
					keystore-type="Windows-MY"
					protocol="TLSv1"
			</connector>

This results in an error like this:
13:54:01,821 ERROR [org.apache.coyote.http11] (MSC service thread 1-5) JBWEB003043: Error initializing endpoint: java.io.FileNotFoundException: C:\Users\imauser\.keystore (The system cannot find the file specified)

You can work around this issue by creating this keystore (C:\Users\imauser\.keystore).


  was:
It is possible to configure the web ssl connector to use the Windows certificate keystore.  However, the JSSESocketFactory checks for a keystore file.  This check should likely be skipped when the connector is configured to use the Windows keystore.

Here is what the configuration looks like:
<connector name="https" protocol="HTTP/1.1" scheme="https" socket-binding="https" secure="true">
				 <ssl name="https" 
					key-alias="jbossweb" 
					keystore-type="Windows-MY"
					protocol="TLSv1"
			</connector>

This results in an error like this:
13:54:01,821 ERROR [org.apache.coyote.http11] (MSC service thread 1-5) JBWEB003043: Error initializing endpoint: java.io.FileNotFoundException: C:\Users\imauser\.keystore (The system cannot find the file specified)

You can work around this issue by creating this keystore (C:\Users\imauser\.keystore).




> Improve ability to use MS Windows keystore for the web servers ssl connector
> ----------------------------------------------------------------------------
>
>                 Key: WFLY-3483
>                 URL: https://issues.jboss.org/browse/WFLY-3483
>             Project: WildFly
>          Issue Type: Enhancement
>      Security Level: Public(Everyone can see) 
>          Components: Web (JBoss Web)
>            Reporter: Derek Horton
>            Assignee: Remy Maucherat
>
> It is possible to configure the web ssl connector to use the Windows certificate keystore (access provided by the SunMSCAPI provider).  However, the JSSESocketFactory checks for a keystore file.  This check should likely be skipped when the connector is configured to use the Windows keystore.
> Here is what the configuration looks like:
> <connector name="https" protocol="HTTP/1.1" scheme="https" socket-binding="https" secure="true">
> 				 <ssl name="https" 
> 					key-alias="jbossweb" 
> 					keystore-type="Windows-MY"
> 					protocol="TLSv1"
> 			</connector>
> This results in an error like this:
> 13:54:01,821 ERROR [org.apache.coyote.http11] (MSC service thread 1-5) JBWEB003043: Error initializing endpoint: java.io.FileNotFoundException: C:\Users\imauser\.keystore (The system cannot find the file specified)
> You can work around this issue by creating this keystore (C:\Users\imauser\.keystore).



--
This message was sent by Atlassian JIRA
(v6.2.6#6264)


More information about the jboss-jira mailing list