Tim,
You may want to completely override the default server certificate validation logic
and provide your custom implementation.
Feel free to take AuthSSLProtocolSocketFactory.java and AuthSSLX509TrustManager.java
classes below as a starting point
Tim,
Make sure you imported the CA certificate with the -trustcacerts option.
If you do everything else correctly, and leave out this step, you'll see
the problem you reported. I've tripped over that mistake once or twice.
That's just a shot-in-the-dark as to what might be your problem, though.
Hello Juan,
Sounds like you've thought this through pretty well. Your overall plan
sound good. Please find my specific comments below:
- Is it possible to set different values for MAX_HOST_CONNECTION, in a
per HOST basis? My application has to connect to some host and I'd like
to set different
DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUG
RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT
http://issues.apache.org/bugzilla/show_bug.cgi?id=29588.
ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED AND
INSERTED IN THE BUG DATABASE.