If you want the rabbitmq manager to work with ssl only put this in the rabbitmq.config
{rabbitmq_management,
[{listener, [{port, 15672},
{ssl, true},
{ssl_opts, [{cacertfile, "/home/me/testca/cacert.pem"},
{certfile, "/home/me/testca/server/cert.pem"},
{keyfile, "/home/me/testca/server/key.pem"},
{verify, verify_peer},
{fail_if_no_peer_cert, false }]}]}]},
Before doing so, you need to use the openssl to create the necessary certificates.
Beware to use the latest patch to the openssl that includes the bug fix for heartbeat bug.
Where ? you can read here, it's one possible example.
Showing posts with label pem. Show all posts
Showing posts with label pem. Show all posts
Apr 10, 2014
Aug 7, 2011
unable to find valid certification path to requested target
Hi,
The issue: You are probably missing the certificate for the specific site you work with.
Solution: You need to add export the certificate for the site mentioned above, After exporting it, add it to the cacerts file of java (default file) which located usually here : "c:\Program Files\Java\jdk1.6.0_23\jre\lib\security".
(the default java password for this file is 'changeit').
* If you need the export procedure, tell me, it's simple i can guide you.
In the code, add this lines :
System.setProperty("javax.net.ssl.trustStore", "path_to_cacerts_file/cacerts"); // for example c:\cert\cacerts
System.setProperty("javax.net.ssl.trustStorePassword", "changeit"); //unless you change it
You can also create your own certificate storage file and direct java to it instead.
Helpful link to keytool can be found here.
The issue: You are probably missing the certificate for the specific site you work with.
Solution: You need to add export the certificate for the site mentioned above, After exporting it, add it to the cacerts file of java (default file) which located usually here : "c:\Program Files\Java\jdk1.6.0_23\jre\lib\security".
(the default java password for this file is 'changeit').
* If you need the export procedure, tell me, it's simple i can guide you.
In the code, add this lines :
System.setProperty("javax.net.ssl.trustStore", "path_to_cacerts_file/cacerts"); // for example c:\cert\cacerts
System.setProperty("javax.net.ssl.trustStorePassword", "changeit"); //unless you change it
You can also create your own certificate storage file and direct java to it instead.
Helpful link to keytool can be found here.
Subscribe to:
Posts (Atom)