CA认证idea证书加载编码报错

CA认证,idea证书加载编码报错java.io.IOException: Invalid Keystore format

pom文件中添加忽略自动转码:在这里插入图片描述

POM文件配置

	<plugin>
				<groupId>org.apache.maven.plugins</groupId>
				<artifactId>maven-resources-plugin</artifactId>
				<configuration>
					<delimiters>
						<delimiter>@</delimiter>
					</delimiters>
					<useDefaultDelimiters>false</useDefaultDelimiters>
					<!-- 过滤后缀为pem、pfx的证书文件 -->
					<nonFilteredFileExtensions>
						<nonFilteredFileExtension>p12</nonFilteredFileExtension>
						<nonFilteredFileExtension>pem</nonFilteredFileExtension>
						<nonFilteredFileExtension>pfx</nonFilteredFileExtension>
					</nonFilteredFileExtensions>
				</configuration>
			</plugin>

CA认证过程(java)

private Logger logger = LoggerFactory.getLogger(HttpsUtil.class);
    // 客户端证书路径,用了本地绝对路径,需要修改
    private final static String CLIENT_CERT_FILE = "C:\\Users\\*.p12";
    /**客户端证书路径*/
    private static final ClassPathResource KEY_STORE_CLIENT_PATH = new ClassPathResource("certificate/*.p12");
    /** keystore类型JKS*/
    private static final String KEY_STORE_TYPE_JKS = "JKS";
    /** keystore密码*/
    private static final String KEYSTORE_PASSWORD = "******";
    private CloseableHttpClient httpClient;
    /**
     * @throws Exception
     */
    public HttpsUtil() throws Exception {
        KeyStore keyStore = KeyStore.getInstance(KEY_STORE_TYPE_JKS);
        KeyStore trustKeyStore = KeyStore.getInstance(KeyStore.getDefaultType());
        System.out.println(KEY_STORE_CLIENT_PATH.getFile());
        InputStream instream =  KEY_STORE_CLIENT_PATH.getInputStream(); //new FileInputStream(CLIENT_CERT_FILE);
        try {
            //密钥库口令
            keyStore.load(instream, KEYSTORE_PASSWORD.toCharArray());
        } catch (CertificateException e) {
            logger.error("加载客户端端可信任证书出错了", e);
        } finally {
            try {
                if (instream != null) instream.close();
//                instream.close();
            } catch (Exception ignore) {
            }
        }
        SSLContext sslcontext = SSLContexts.custom()
                //忽略掉对服务器端证书的校验
                .loadTrustMaterial(new TrustStrategy() {
                    @Override
                    public boolean isTrusted(X509Certificate[] chain, String authType) throws CertificateException {
                        return true;
                    }
                })
                .loadKeyMaterial(keyStore, KEYSTORE_PASSWORD.toCharArray())
                .build();

        SSLConnectionSocketFactory sslConnectionSocketFactory = new SSLConnectionSocketFactory(
                sslcontext,
                new String[]{"TLSv1.1"},
                null,
                SSLConnectionSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER);
        this.httpClient = HttpClients.custom()
                .setSSLSocketFactory(sslConnectionSocketFactory)
                .build();
    }

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值