Re: PostgreSQL + SSL - sun.security.validator.ValidatorException - Mailing list pgsql-jdbc

From Kris Jurka
Subject Re: PostgreSQL + SSL - sun.security.validator.ValidatorException
Date
Msg-id Pine.BSO.4.56.0412110728120.2747@leary.csoft.net
Whole thread Raw
In response to Re: PostgreSQL + SSL - sun.security.validator.ValidatorException  (Andrew M <andrew@jibeya.com>)
List pgsql-jdbc

On Sat, 11 Dec 2004, Andrew M wrote:

> The only problem with this is, how do you copy an openssl {key|crt}
> pair into a keytool keystore?

No this isn't the problem.  The problem is telling the SSL implementation
that you want to use this cert for client authentication.  The best I can
gather is that you would need to implement a javax.net.ssl.X509KeyManager
and make chooseClientAlias() return the alias of the cert you want to use
in the keystore.  Implementing a X509KeyManager does not look like an easy
thing to do though and there doesn't seem to be a good way of only
extending part of it and falling back to the default implmentation for the
rest.

Kris Jurka

pgsql-jdbc by date:

Previous
From: Andrew M
Date:
Subject: Re: PostgreSQL + SSL - sun.security.validator.ValidatorException
Next
From: Nicolai Tufar
Date:
Subject: Translation update: tr