免费注册 查看新帖 |

Chinaunix

  平台 论坛 博客 文库
最近访问板块 发新帖
查看: 6008 | 回复: 1
打印 上一主题 下一主题

关于javax.net.ssl.SSLHandshakeException异常 [复制链接]

论坛徽章:
0
跳转到指定楼层
1 [收藏(0)] [报告]
发表于 2007-07-26 23:16 |只看该作者 |倒序浏览
javax.net.ssl.SSLHandshakeException: sun.security.validator.ValidatorException: No trusted certificate found
        at com.sun.net.ssl.internal.ssl.Alerts.getSSLException(Unknown Source)
        at com.sun.net.ssl.internal.ssl.SSLSocketImpl.fatal(Unknown Source)

证书已经通过keytool工具导入到C:\j2sdk1.4.2_07\jre\lib\security\cacerts目录中,通过-list选项可以看到导入成功,不知道总是报这个错,google了很多资料,问题没有解决,不知道该怎么办了,求高手指导一下。



*** Certificate chain
chain [0] = [
[
  Version: V3
  Subject: EMAILADDRESS=service@mail.xxx.com, CN=yyy.xxx.com, OU=pay, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN
  Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

  Key:  Sun RSA public key, 1024 bits
  modulus: 151334642653711140796950155944410912377544716232131036825410982700055849943828201120991424779884277478995893150471611034479182654373576057325741953317407428469439397868195781194059431289971440261825788155236262185388417071972425698721967713347594967741789526055058071931329712843635343236004751519307843221791
  public exponent: 65537
  Validity: [From: Tue May 15 09:26:47 CST 2007,
               To: Wed May 14 09:26:47 CST 2008]
  Issuer: EMAILADDRESS=XXX@XXX.com, CN=TT, OU=OSS, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN
  SerialNumber: [    9b]

Certificate Extensions: 4
[1]: ObjectId: 2.16.840.1.113730.1.13 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 1F 16 1D 4F 70 65 6E   53 53 4C 20 47 65 6E 65  ....OpenSSL Gene
0010: 72 61 74 65 64 20 43 65   72 74 69 66 69 63 61 74  rated Certificat
0020: 65                                                 e


[2]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: E6 3D 23 8E 97 84 28 41   A5 87 95 72 AA C6 55 49  .=#...(A...r..UI
0010: 69 36 0F B6                                        i6..
]
]

[3]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: E2 DD AB 17 92 58 51 64   0D 9D BF 2D 28 9F 1B E8  .....XQd...-(...
0010: C2 6C 76 63                                        .lvc
]

[EMAILADDRESS=XXX@XXX.com, CN=TT, OU=OSS, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN]
SerialNumber: [    8eda54ee e2630710]
]

[4]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
  CA:false
  PathLen: undefined
]

]
  Algorithm: [MD5withRSA]
  Signature:
0000: 64 04 F5 A0 8A E6 28 06   61 7C C0 74 76 1A 9E 3B  d.....(.a..tv..;
0010: 70 1C DD 13 FB 38 D0 40   40 99 A9 8D 37 26 D2 BE  p....8.@@...7&..
0020: C1 0B 7F B5 2B 72 48 49   C2 A4 4D 65 2E 0C 5E 61  ....+rHI..Me..^a
0030: D2 BC 37 8E 0D B7 30 9E   0D B0 16 52 2B 5C 11 75  ..7...0....R+\.u
0040: 2E 8F 0C 77 7F 86 DC 4E   7A 37 12 F5 2D 5B A8 B4  ...w...Nz7..-[..
0050: D4 82 27 C9 CA 12 6E 09   23 96 1D 82 56 AC B3 EE  ..'...n.#...V...
0060: 29 EC 1F 3B 7F FD 5D 35   73 F3 AC 43 56 03 84 69  )..;..]5s..CV..i
0070: D3 C7 A5 67 EB 7E 13 B7   D7 DD 0A 8F 3D 93 B2 C7  ...g........=...

]
chain [1] = [
[
  Version: V3
  Subject: EMAILADDRESS=XXX@TT.com, CN=TT, OU=OSS, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN
  Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

  Key:  Sun RSA public key, 1024 bits
  modulus: 152446488073120389716221578864135092445044695825313677100108121781162065232757960682079430742803973613546172305506960179390430680392002988308285238486822547032093509647931233362293810550537037069194855394548288028723984874850394038193030953177593060386144407045962865492419237561265951208429493132233390769001
  public exponent: 65537
  Validity: [From: Tue Mar 14 22:22:23 CST 2006,
               To: Fri Mar 11 22:22:23 CST 2016]
  Issuer: EMAILADDRESS=XXX@XXX.com, CN=TT, OU=OSS, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN
  SerialNumber: [    8eda54ee e2630710]

Certificate Extensions: 3
[1]: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: E2 DD AB 17 92 58 51 64   0D 9D BF 2D 28 9F 1B E8  .....XQd...-(...
0010: C2 6C 76 63                                        .lvc
]
]

[2]: ObjectId: 2.5.29.35 Criticality=false
AuthorityKeyIdentifier [
KeyIdentifier [
0000: E2 DD AB 17 92 58 51 64   0D 9D BF 2D 28 9F 1B E8  .....XQd...-(...
0010: C2 6C 76 63                                        .lvc
]
***
writer15, SEND TLSv1 ALERT:  fatal, description = certificate_unknown
writer15, WRITE: TLSv1 Alert, length = 2

[EMAILADDRESS=XXX@XXX.com, CN=TT, OU=OSS, O=TT, L=SHENZHEN, ST=GUANGDONG, C=CN]
SerialNumber: [    8eda54ee e2630710]
]

[3]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
  CA:true
  PathLen:2147483647
]

]
  Algorithm: [MD5withRSA]
  Signature:
0000: 8C 54 E6 4D 98 63 BD 5C   0B 44 3C 5B 80 DD 0E 36  .T.M.c.\.D<[...6
0010: 2E 47 DC C0 72 BD 43 40   80 31 B3 0F 03 8A 4D 00  .G..r.C@.1....M.
0020: 3C 41 59 A4 2F BF 9A 24   13 76 06 D5 13 46 2E 9F  <AY./..$.v...F..
0030: F2 C3 2C 57 0E CE B6 AA   91 07 70 33 D0 87 9A 68  ..,W......p3...h
0040: AD 02 91 3F 73 C1 E7 8A   4B DC 01 4B A2 E1 1C B8  ...?s...K..K....
0050: 7E 23 ED EF 1F F2 DA A8   90 E3 26 B5 37 DE 49 44  .#........&.7.ID
0060: C9 C1 85 A5 6F 05 04 BB   9D C0 84 D0 65 42 5D 73  ....o.......eB]s
0070: 01 39 06 99 E5 11 B2 65   E0 E4 69 EE 34 05 9A 7E  .9.....e..i.4...

]
***

论坛徽章:
0
2 [报告]
发表于 2007-07-31 20:03 |只看该作者
描叙太少,cacerts只是信任CA的证书,不知道你做的什么程序,
双向认证都需要证书

-Djavax.net.debug=all
您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复

  

北京盛拓优讯信息技术有限公司. 版权所有 京ICP备16024965号-6 北京市公安局海淀分局网监中心备案编号:11010802020122 niuxiaotong@pcpop.com 17352615567
未成年举报专区
中国互联网协会会员  联系我们:huangweiwei@itpub.net
感谢所有关心和支持过ChinaUnix的朋友们 转载本站内容请注明原作者名及出处

清除 Cookies - ChinaUnix - Archiver - WAP - TOP