2017-06-12 102 views
0

我使用apache httpclient 4.5.3和apache httpcore 4.4.6。我需要通过POST调用来调用SOAP WSapache httpclient pfx文件

他们给了我一个pfx证书。我通过配置SOAP UI在SOAP UI中使用它,并且所有工作都非常好。我可以调用WS,它给了我一个回应。所以证书是有效的

现在我想配置apache httpclient做同样的事情。这里我写的代码:

KeyStore clientStore = KeyStore.getInstance("PKCS12"); 
InputStream instream = Thread.currentThread().getContextClassLoader().getResourceAsStream(keystoreName); 
try { 
    clientStore.load(instream, keyStorePwd.toCharArray()); 
} finally { 
    instream.close(); 
} 
SSLContext sslCtx = SSLContext.getDefault(); 
SSLConnectionSocketFactory sslConnectionFactory = new SSLConnectionSocketFactory(sslCtx); 
Registry<ConnectionSocketFactory> registry = RegistryBuilder.<ConnectionSocketFactory>create().register("https", sslConnectionFactory).register("http", new PlainConnectionSocketFactory()).build(); 
PoolingHttpClientConnectionManager pcm = new PoolingHttpClientConnectionManager(registry); 
HttpClientBuilder hcb = HttpClientBuilder.create(); 
hcb.setConnectionManager(pcm); 
CloseableHttpClient httpClient = hcb.build(); 

通过尝试这段代码,我无法成功调用WS。我敢肯定我错过了一些东西,但我找不到我想要的东西

任何人都可以告诉我如何继续?

谢谢 安杰洛

回答

0

我想我错过了什么。我发布我的解决方案希望它可以是有用的

基本上我错了,因为我没有仔细配置SSLContext 我不得不仔细配置它。

这是我写的:

KeyStore clientStore = KeyStore.getInstance("PKCS12"); 
InputStream instream = Thread.currentThread().getContextClassLoader().getResourceAsStream(keystoreName); 
try { 
    clientStore.load(instream, keyStorePwd.toCharArray()); 
} finally { 
    instream.close(); 
} 
//Trust everybody 
X509TrustManager tm = new X509TrustManager() { 
    @Override 
    public void checkClientTrusted(java.security.cert.X509Certificate[] arg0, String arg1) throws CertificateException {} 
    @Override 
    public void checkServerTrusted(java.security.cert.X509Certificate[] arg0, String arg1) throws CertificateException {} 
    @Override 
    public java.security.cert.X509Certificate[] getAcceptedIssuers() {return null;} 
}; 
SSLContext sslCtx = SSLContext.getInstance("TLS"); 
KeyManagerFactory kmfactory = KeyManagerFactory.getInstance(KeyManagerFactory.getDefaultAlgorithm()); 
kmfactory.init(clientStore, keyStorePwd != null ? keyStorePwd.toCharArray() : null); 
KeyManager[] keymanagers = kmfactory.getKeyManagers(); 
sslCtx.init(keymanagers, new TrustManager[]{tm}, null); 
SSLConnectionSocketFactory sslConnectionFactory = new SSLConnectionSocketFactory(sslCtx); 
Registry<ConnectionSocketFactory> registry = RegistryBuilder.<ConnectionSocketFactory>create().register("https", sslConnectionFactory).register("http", new PlainConnectionSocketFactory()).build(); 
PoolingHttpClientConnectionManager pcm = new PoolingHttpClientConnectionManager(registry); 
HttpClientBuilder hcb = HttpClientBuilder.create(); 
hcb.setConnectionManager(pcm); 
CloseableHttpClient httpClient = hcb.build(); 

现在所有的作品不错

谢谢

安杰洛