This week's book giveaway is in the OCMJEA forum.
We're giving away four copies of OCM Java EE 6 Enterprise Architect Exam Guide and have Paul Allen & Joseph Bambara on-line!
See this thread for details.
The moose likes Sockets and Internet Protocols and the fly likes SSL Client Auth Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login


Win a copy of OCM Java EE 6 Enterprise Architect Exam Guide this week in the OCMJEA forum!
JavaRanch » Java Forums » Java » Sockets and Internet Protocols
Bookmark "SSL Client Auth" Watch "SSL Client Auth" New topic
Author

SSL Client Auth

Ariffin Ahmad
Ranch Hand

Joined: Aug 16, 2001
Posts: 84
i'm a bit confusing about how client authentication for SSL works. i tried to used it with tomcat 4.0, but, theres not much about it on tomcat documentation. anyone can help me on that?... any tutorial site i can refer to?....
Afranio
Greenhorn

Joined: Jul 31, 2002
Posts: 3
first you should configure the tomcat
http://jakarta.apache.org/tomcat/tomcat-4.1-doc/ssl-howto.html
second you should write a program in java for acess any file using https(localhost)
For this you should use the generated: keystore and a certificate, for the authentication(this is do in pass 1).
if you are able to generate a certificate tell me, because I are not
http://java.sun.com/j2se/1.4/docs/guide/security/jsse/JSSERefGuide.html
http://archives.postgresql.org/pgsql-jdbc/2002-05/msg00105.php
Ariffin Ahmad
Ranch Hand

Joined: Aug 16, 2001
Posts: 84
i've been through those link that u provide, but wasn't useful.
nothing in detail about how to implement ssl client authentication on tomcat...
how do my application on the tomcat check the identity of the client, through that certificate....
Omar IRAQI
Ranch Hand

Joined: Jul 06, 2001
Posts: 54
Salam Ahmed,
Are you trying to establish a SSL connection between the HTML client and the Web Server, or between the servlet and some backend server (broker) ?


Omar IRAQI Houssaini
Ariffin Ahmad
Ranch Hand

Joined: Aug 16, 2001
Posts: 84
Originally posted by Omar IRAQI:
Salam Ahmed,
Are you trying to establish a SSL connection between the HTML client and the Web Server, or between the servlet and some backend server (broker) ?

Both....
first, between HTML browser and the web server..
second, between an applet and the web server...
the web server need to know the identity of the client, through client certificate.
Afranio
Greenhorn

Joined: Jul 31, 2002
Posts: 3
did you configure the tomcat?
Ariffin Ahmad
Ranch Hand

Joined: Aug 16, 2001
Posts: 84
Originally posted by Afranio:
did you configure the tomcat?

yap...
but, as i said... there's not much i need to configure, except setting 'clientAuth' to 'true'. no explaination about the client authentication on jakarta tomcat web site either....
 
Don't get me started about those stupid light bulbs.
 
subject: SSL Client Auth