cert/key config woes

2022-06-01 Thread Rob Sargent
This part always confuses me I supply the trust and key store files on the command line and I see the SAN for the tomcat server IP (in ObjectId #3). I try to connect to tomcat by host-IP and port.  Here's the text of the keystore sent in. Keystore type: PKCS12 Keystore provider: SUN

Re: FIPS Mode is not getting enabled in Tomcat9 using Openssl 3.0.2 post successful FIPS module installation in windows

2022-06-01 Thread Mark Thomas
On 01/06/2022 17:00, Christopher Schultz wrote: Mark, On 6/1/22 09:49, Mark Thomas wrote: On 20/05/2022 12:43, Mark Thomas wrote: Tomcat Native has not been updated for OpenSSL 3.0.x and FIPS. Code changes in Tomcat Native are going to be required to get this to work. After doing some

Re: FIPS Mode is not getting enabled in Tomcat9 using Openssl 3.0.2 post successful FIPS module installation in windows

2022-06-01 Thread Christopher Schultz
Mark, On 6/1/22 09:49, Mark Thomas wrote: On 20/05/2022 12:43, Mark Thomas wrote: Tomcat Native has not been updated for OpenSSL 3.0.x and FIPS. Code changes in Tomcat Native are going to be required to get this to work. After doing some work on this I have an update. First of all,

Re: FIPS Mode is not getting enabled in Tomcat9 using Openssl 3.0.2 post successful FIPS module installation in windows

2022-06-01 Thread Mark Thomas
On 20/05/2022 12:43, Mark Thomas wrote: Tomcat Native has not been updated for OpenSSL 3.0.x and FIPS. Code changes in Tomcat Native are going to be required to get this to work. After doing some work on this I have an update. First of all, OpenSSL 3 has not yet obtained FIPS