創建一個不驗證證書鏈
TrustManager[] trustAllCerts = new TrustManager[]{
new X509TrustManager() {
public java.security.cert.X509Certificate[] getAcceptedIssuers() {
return null;
}
public void checkClientTrusted(
java.security.cert.X509Certificate[] certs, String authType) {
}
public void checkServerTrusted(
java.security.cert.X509Certificate[] certs, String authType) {
}
}
};
信任管理器安裝所有信任信任管理器
try {
SSLContext sc = SSLContext.getInstance("SSL");
sc.init(null, trustAllCerts, new java.security.SecureRandom());
HttpsURLConnection.setDefaultSSLSocketFactory(sc.getSocketFactory());
} catch (Exception e) {
}
現在訪問HTTPS URL
try {
URL url = new URL("https://www.sandbox.freelancer.com");
HttpsURLConnection conn = (HttpsURLConnection)url.openConnection();
BufferedReader br =
new BufferedReader(new InputStreamReader(conn.getInputStream()));
} catch (MalformedURLException e) {
}
爲什麼不創建只信任該特定證書的信任管理器,並對所有其他證書進行默認檢查? – 2011-01-06 00:11:26
@GregS是的,這可能已經完成了,但我認爲這不會解決問題,如果證書有一個不受信任的根證書頒發機構鏈。 – 2011-01-06 16:41:37