Ok Martin: You are right I am using a certificate generated for getacert (http://getacert.com/signacert.html). Even though Tomcat tells me to purchase a certificate from those places you mention, is there any way to get this certificate free?
As a matter of fact I am just testing how to use htpps connection with Tomcat (an open source product). Regards. ----- Original Message ----- From: "Martin Gainty" <mgai...@hotmail.com> To: "Tomcat Users List" <users@tomcat.apache.org> Sent: Thursday, October 25, 2012 12:27:31 PM Subject: RE: Implementing SSL and error invocating https://localhost:8443/ (Tomcat 7.0 on Windows 7) Gabriel unless you are using a cert from entrust, verisign or thawte you cannot generate a certificate which will be trusted as a CA level cert by all versions for all supported browsers Buena Suerte, Martin ______________________________________________ Porfavor..no altere ni interruptir esta communicacion..Gracias Date: Thu, 25 Oct 2012 12:02:22 -0500 From: huert...@hildebrando.com To: users@tomcat.apache.org Subject: Re: Implementing SSL and error invocating https://localhost:8443/ (Tomcat 7.0 on Windows 7) Hi Christopher: What I tried to mean is that Internet explorer fails. I have attached image file with the error generated(Internet Explorer error.gif). By the way below is what Tomcat generates as log, once I started Tomcat and after executing https://localhost:8443/ on my Internet Explorer: 25/10/2012 12:00:57 PM org.apache.catalina.core.AprLifecycleListener init INFO: La biblioteca nativa de Apache Tomcat basada en ARP que permite un rendimiento óptimo en entornos de desarrollo no ha sido hallada en java.library.path: C:\jdk1.6.35\bin;C:\windows\Sun\Java\bin;C:\windows\system32;C:\windows;C:\windows\system32;C:\windows;C:\windows\System32\Wbem;C:\windows\System32\WindowsPowerShell\v1.0\;C:\mingw\mingw64\bin;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\jdk1.6.35\bin;C:\Spring\apache-maven-3.0.4\bin;C:\Program Files (x86)\Liquid Technologies\Liquid XML Studio 2011\XmlDataBinder9\Redist9\cpp\win32\bin;C:\cygwin\bin\;C:\apache-ant-1.8.2/bin;C:\Program Files (x86)\Microchip\MPLAB C32 Suite\bin;C:\Program Files (x86)\QuickTime\QTSystem\;C:\Program Files\TortoiseSVN\bin;C:\Program Files (x86)\CVSNT\;. 25/10/2012 12:00:57 PM org.apache.coyote.AbstractProtocol init INFO: Initializing ProtocolHandler ["http-bio-8080"] 25/10/2012 12:00:57 PM org.apache.coyote.AbstractProtocol init INFO: Initializing ProtocolHandler ["http-nio-8443"] 25/10/2012 12:00:58 PM org.apache.tomcat.util.net.NioSelectorPool getSharedSelector INFO: Using a shared selector for servlet write/read 25/10/2012 12:00:58 PM org.apache.coyote.AbstractProtocol init INFO: Initializing ProtocolHandler ["ajp-bio-8009"] 25/10/2012 12:00:58 PM org.apache.catalina.startup.Catalina load INFO: Initialization processed in 679 ms 25/10/2012 12:00:58 PM org.apache.catalina.core.StandardService startInternal INFO: Arrancando servicio Catalina 25/10/2012 12:00:58 PM org.apache.catalina.core.StandardEngine startInternal INFO: Starting Servlet Engine: Apache Tomcat/7.0.32 25/10/2012 12:00:58 PM org.apache.catalina.startup.HostConfig deployDirectory INFO: Despliegue del directorio C:\Tomcat7.0\webapps\docs de la aplicación web 25/10/2012 12:00:58 PM org.apache.catalina.startup.HostConfig deployDirectory INFO: Despliegue del directorio C:\Tomcat7.0\webapps\examples de la aplicación web 25/10/2012 12:00:58 PM org.apache.catalina.startup.HostConfig deployDirectory INFO: Despliegue del directorio C:\Tomcat7.0\webapps\host-manager de la aplicación web 25/10/2012 12:00:58 PM org.apache.catalina.startup.HostConfig deployDirectory INFO: Despliegue del directorio C:\Tomcat7.0\webapps\manager de la aplicación web 25/10/2012 12:00:58 PM org.apache.catalina.startup.HostConfig deployDirectory INFO: Despliegue del directorio C:\Tomcat7.0\webapps\ROOT de la aplicación web 25/10/2012 12:00:58 PM org.apache.coyote.AbstractProtocol start INFO: Starting ProtocolHandler ["http-bio-8080"] 25/10/2012 12:00:58 PM org.apache.coyote.AbstractProtocol start INFO: Starting ProtocolHandler ["http-nio-8443"] 25/10/2012 12:00:58 PM org.apache.coyote.AbstractProtocol start INFO: Starting ProtocolHandler ["ajp-bio-8009"] 25/10/2012 12:00:58 PM org.apache.catalina.startup.Catalina start INFO: Server startup in 488 ms Regards. ----- Original Message ----- From: "Christopher Schultz" <ch...@christopherschultz.net> To: "Tomcat Users List" <users@tomcat.apache.org> Sent: Thursday, October 25, 2012 11:21:15 AM Subject: Re: Implementing SSL and error invocating https://localhost:8443/ (Tomcat 7.0 on Windows 7) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Gabriel, On 10/25/12 10:35 AM, Gabriel Huerta Araujo wrote: > I have followed your procedure which has been stated on > http://tomcat.apache.org/tomcat-7.0-doc/ssl-howto.html to use SSL > or https with JSSE implementation. > > Below is configuration for my server.xml <Connector > SSLEnabled="true" acceptCount="100" clientAuth="false" > disableUploadTimeout="true" enableLookups="false" maxThreads="25" > port="8443" keystoreFile="${user.home}/.keystore" > keystorePass=<my_password> > protocol="org.apache.coyote.http11.Http11NioProtocol" > scheme="https" secure="true" sslProtocol="TLS" /> > > where <my_password> for obvious reasons I do not provide to you. > > As a matter of fact, I have generated two trusted certificate > entries with keytool: > > keytool -list -keystore .keystore Escriba la contrase±a del almacÚn > de claves: > > Tipo de almacen de claves: JKS Proveedor de almacen de claves: SUN > > Su almacen de claves contiene 2 entradas > > root, 24/10/2012, trustedCertEntry, Huella digital de certificado > (MD5): E2:FF:EB:EF:B5:FA:85:2F:B4:85:FC:1B:1E:0E:94:37 tomcat, > 24/10/2012, trustedCertEntry, Huella digital de certificado (MD5): > E2:FF:EB:EF:B5:FA:85:2F:B4:85:FC:1B:1E:0E:94:37 > > But when I put https://localhost:8443/ on my explorer page, this > crashes (tomcat server is running). What do you mean "this crashes"? Please be specific. - -chris -----BEGIN PGP SIGNATURE----- Version: GnuPG/MacGPG2 v2.0.17 (Darwin) Comment: GPGTools - http://gpgtools.org Comment: Using GnuPG with Mozilla - http://www.enigmail.net/ iEYEARECAAYFAlCJZvsACgkQ9CaO5/Lv0PABXgCgm0EOtaNGCUZlpPPiJOfWWH00 z9QAoLJt0mUY2CHDr6eLC1LWtiDNzID/ =94PW -----END PGP SIGNATURE----- --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org For additional commands, e-mail: users-h...@tomcat.apache.org