[QFJ-234] Add documetation to kinds of SSL certs supported for SSL connectivity Created: 31/Aug/07 Updated: 06/Oct/07 |
|
Status: | Open |
Project: | QuickFIX/J |
Component/s: | Documentation |
Affects Version/s: | 1.2.1 |
Fix Version/s: | Future Releases |
Type: | Task | Priority: | Default |
Reporter: | Toli Kuznets | Assignee: | Unassigned |
Resolution: | Unresolved | Votes: | 0 |
Labels: | None |
Description |
Need to add more documentation specifying the exact format of SSL certs that are necessary to be in the keystore for SSL connectivity to work. Seems like the PKCS#12 is the format that needs to be in the keystore, but perhaps there are others. |
Comments |
Comment by Gregg Freeman [ 31/Aug/07 ] |
I believe that the keystore is it's own "special" java format, and easily accepts DER encoded certificates/keys. However, PKCS#12, which is the only format that windows supports for private key encoded certificates, isn't readable by the standard java keytool utility. The following worked for me to use a private key PKCS12 certificate: Make the keystore file available on the classpath. For connections that can use a self-signed certificate, it's much easier. Follow the prompts, change your session.properties, and make the keystore available on the classpath & you're all good. |