2016-08-03 106 views
1

当我创建一个SSL套接字是这样的:用的createSocket HTTPS问题,连接和connectionTimeout

sslSocket = (SSLSocket) socketFactory.createSocket(host, port); 

一切正常。 socketFactorySSLSocketFactory.getDefault()。但是,我想设置连接超时。因此,我在上面行更改为下面的代码:

sslSocket = (SSLSocket) socketFactory.createSocket(); 
sslSocket.connect(new InetSocketAddress(host, port), connectionTimeout); 

但后来我得到了以下异常:

Exception in thread "main" jodd.http.HttpException: sun.security.validator.ValidatorException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target; 

原因的异常:

sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 

当我调试这个,我我们注意到在第一种情况下,代码从请求的站点获取所有有效的证书。在第二种情况下,这些证书丢失,因此错误。

还有什么我需要添加在我的2班轮变化,使其工作像第一个单线版本?

完整堆栈跟踪

jodd.http.HttpException: sun.security.validator.ValidatorException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target; <--- sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 
    at jodd.http.HttpRequest.open(HttpRequest.java:667) 
    at jodd.http.HttpRequest.open(HttpRequest.java:649) 
    at jodd.http.HttpRequest._send(HttpRequest.java:747) 
    at jodd.http.HttpRequest.send(HttpRequest.java:742) 
    at jodd.JoddHttpTest.main(JoddHttpTest.java:56) 
Caused by: javax.net.ssl.SSLHandshakeException: sun.security.validator.ValidatorException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 
    at sun.security.ssl.Alerts.getSSLException(Alerts.java:192) 
    at sun.security.ssl.SSLSocketImpl.fatal(SSLSocketImpl.java:1949) 
    at sun.security.ssl.Handshaker.fatalSE(Handshaker.java:302) 
    at sun.security.ssl.Handshaker.fatalSE(Handshaker.java:296) 
    at sun.security.ssl.ClientHandshaker.serverCertificate(ClientHandshaker.java:1509) 
    at sun.security.ssl.ClientHandshaker.processMessage(ClientHandshaker.java:216) 
    at sun.security.ssl.Handshaker.processLoop(Handshaker.java:979) 
    at sun.security.ssl.Handshaker.process_record(Handshaker.java:914) 
    at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:1062) 
    at sun.security.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1375) 
    at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1403) 
    at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1387) 
    at jodd.http.net.SocketHttpConnectionProvider.createSSLSocket(SocketHttpConnectionProvider.java:153) 
    at jodd.http.net.SocketHttpConnectionProvider.createHttpConnection(SocketHttpConnectionProvider.java:68) 
    at jodd.http.HttpRequest.open(HttpRequest.java:665) 
    ... 4 more 
Caused by: sun.security.validator.ValidatorException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 
    at sun.security.validator.PKIXValidator.doBuild(PKIXValidator.java:387) 
    at sun.security.validator.PKIXValidator.engineValidate(PKIXValidator.java:292) 
    at sun.security.validator.Validator.validate(Validator.java:260) 
    at sun.security.ssl.X509TrustManagerImpl.validate(X509TrustManagerImpl.java:324) 
    at sun.security.ssl.X509TrustManagerImpl.checkTrusted(X509TrustManagerImpl.java:229) 
    at sun.security.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:124) 
    at sun.security.ssl.ClientHandshaker.serverCertificate(ClientHandshaker.java:1491) 
    ... 14 more 
Caused by: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 
    at sun.security.provider.certpath.SunCertPathBuilder.build(SunCertPathBuilder.java:141) 
    at sun.security.provider.certpath.SunCertPathBuilder.engineBuild(SunCertPathBuilder.java:126) 
    at java.security.cert.CertPathBuilder.build(CertPathBuilder.java:280) 
    at sun.security.validator.PKIXValidator.doBuild(PKIXValidator.java:382) 
    ... 20 more 
---[cause]------------------------------------------------------------------------ 
sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target 
    at sun.security.provider.certpath.SunCertPathBuilder.build(SunCertPathBuilder.java:141) 
    at sun.security.provider.certpath.SunCertPathBuilder.engineBuild(SunCertPathBuilder.java:126) 
    at java.security.cert.CertPathBuilder.build(CertPathBuilder.java:280) 
    at sun.security.validator.PKIXValidator.doBuild(PKIXValidator.java:382) 
    at sun.security.validator.PKIXValidator.engineValidate(PKIXValidator.java:292) 
    at sun.security.validator.Validator.validate(Validator.java:260) 
    at sun.security.ssl.X509TrustManagerImpl.validate(X509TrustManagerImpl.java:324) 
    at sun.security.ssl.X509TrustManagerImpl.checkTrusted(X509TrustManagerImpl.java:229) 
    at sun.security.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:124) 
    at sun.security.ssl.ClientHandshaker.serverCertificate(ClientHandshaker.java:1491) 
    at sun.security.ssl.ClientHandshaker.processMessage(ClientHandshaker.java:216) 
    at sun.security.ssl.Handshaker.processLoop(Handshaker.java:979) 
    at sun.security.ssl.Handshaker.process_record(Handshaker.java:914) 
    at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:1062) 
    at sun.security.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1375) 
    at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1403) 
    at sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:1387) 
    at jodd.http.net.SocketHttpConnectionProvider.createSSLSocket(SocketHttpConnectionProvider.java:153) 
    at jodd.http.net.SocketHttpConnectionProvider.createHttpConnection(SocketHttpConnectionProvider.java:68) 
    at jodd.http.HttpRequest.open(HttpRequest.java:665) 
    at jodd.http.HttpRequest.open(HttpRequest.java:649) 
    at jodd.http.HttpRequest._send(HttpRequest.java:747) 
    at jodd.http.HttpRequest.send(HttpRequest.java:742) 
    at jodd.JoddHttpTest.main(JoddHttpTest.java:56) 
+0

发布完整的堆栈跟踪。在你的问题。 – EJP

+0

根据堆栈跟踪,你正在调用'startHandshake()'。这是真实的代码吗? – EJP

+0

@EJP是的,为什么?我在多个例子中看到了这一点,也是如此。它的工作?你能否详细说明一下? – igr

回答

1

这里就是答案。从我的经验来看,这个:

sslSocket = (SSLSocket) socketFactory.createSocket(); 
sslSocket.connect(new InetSocketAddress(host, port), connectionTimeout); 

不起作用(尽管你可以在任何地方看到这个解决方案!)。相反,我做了以下内容:创建一个普通插座,然后把它包装成SSL插座:

Socket sock = new Socket(); 
sock.connect(new InetSocketAddress(host, port), connectionTimeout); 
sslSocket = (SSLSocket)socketFactory.createSocket(sock, host, port, true); 

其中socketFactorySSLSocketFactory实例。