0
我想在java中创建SSL客户端。 1.服务器的公钥:CAfile.pem 2.客户端的私钥:client.pem 3.客户端的公钥:client.crtJava中的SSL客户端
使用客户端的私钥和公钥我已经通过SSL服务器即提供3个文件,我创建了1个keystore,它是一个pkcs12文件,并使用服务器的公钥创建了1个信任库,这是一个JKS文件。 然后我设置以下系统属性:
System.setProperty("javax.net.ssl.keyStoreType","pkcs12");
System.setProperty("javax.net.ssl.keyStore",<keystorepath>);
System.setProperty("javax.net.ssl.keyStorePassword",<password>);
System.setProperty("javax.net.ssl.trustStoreType","jks");
System.setProperty("javax.net.ssl.trustStore",<truststorepath>);
System.setProperty("javax.net.ssl.trustStorePassword",<password>);
而且,我对TLS握手部分代码是:
System.setProperty("jsse.enableSNIExtension", "false");
SSLContext ctx = SSLContext.getInstance("TLS");
ctx.init(new KeyManager[0], new TrustManager[] {new DefaultTrustManager()}, new SecureRandom());
SSLContext.setDefault(ctx);
SSLSocketFactory factory = (SSLSocketFactory) SSLSocketFactory.getDefault();
sslSocket = (SSLSocket) factory.createSocket(socket,socketHost,port,true);
sslSocket.setSoTimeout(timeout);
sslSocket.startHandshake();
不过,一边做握手,我得到下面的错误。
java.net.SocketException: Software caused connection abort: recv failed
at java.net.SocketInputStream.socketRead0(Native Method)
at java.net.SocketInputStream.read(SocketInputStream.java:152)
at java.net.SocketInputStream.read(SocketInputStream.java:122)
at sun.security.ssl.InputRecord.readFully(InputRecord.java:442)
at sun.security.ssl.InputRecord.read(InputRecord.java:480)
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:927)
at sun.security.ssl.SSLSocketImpl.waitForClose(SSLSocketImpl.java:1705)
at sun.security.ssl.HandshakeOutStream.flush(HandshakeOutStream.java:122)
at sun.security.ssl.Handshaker.sendChangeCipherSpec(Handshaker.java:972)
at sun.security.ssl.ClientHandshaker.sendChangeCipherAndFinish(ClientHandshaker.java:1087)
at sun.security.ssl.ClientHandshaker.serverHelloDone(ClientHandshaker.java:1006)
at sun.security.ssl.ClientHandshaker.processMessage(ClientHandshaker.java:285)
at sun.security.ssl.Handshaker.processLoop(Handshaker.java:868)
at sun.security.ssl.Handshaker.process_record(Handshaker.java:804)
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:1016)
at sun.security.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1312)
at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1339)
at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1323)
at com.integra.socket.TestSocket.connectToSocket(TestSocket.java:107)
at com.integra.socket.TestSocket.main(TestSocket.java:57)
请帮忙。
感谢