有關(guān)創(chuàng)建Https加密的webservice使用者的方法_第1頁
有關(guān)創(chuàng)建Https加密的webservice使用者的方法_第2頁
有關(guān)創(chuàng)建Https加密的webservice使用者的方法_第3頁
有關(guān)創(chuàng)建Https加密的webservice使用者的方法_第4頁
有關(guān)創(chuàng)建Https加密的webservice使用者的方法_第5頁
已閱讀5頁,還剩1頁未讀, 繼續(xù)免費(fèi)閱讀

下載本文檔

版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報或認(rèn)領(lǐng)

文檔簡介

1、creating a self signed certificate in domino此配置的應(yīng)用場景:中石化爍銷公司的crm系統(tǒng)提供了一個經(jīng)https加密的wcbservicc的地址,在創(chuàng)建 webservice使用者后,用ls調(diào)用該接口的時候報如下錯誤:代理的agtgetcustomerlnfo函數(shù)的第25行中,出現(xiàn)錯誤4746:web service z0a_qjst0.mer_inf0mn28 error error connecting to crm. lyxs. s , on port 443, ssl error: keyring file not found該問題的解決步驟如

2、下:步碟一:在對應(yīng)的服務(wù)器用domino certficate authority模板在domino根錄卜創(chuàng)建數(shù)據(jù)序。修 改權(quán)限及簽名,另default的權(quán)限應(yīng)可以創(chuàng)建文檔。確定取消指定新應(yīng)用程序的名稱和位s 服夯器 6) oauat/lyxs 標(biāo)題 ft) dminoauthority艾件名 op) author i ty| nsf創(chuàng)逮全文索引以便逬行捜索(c)為銪應(yīng)用程序指定極板 服務(wù)器00模板cl)design synopsisdomino administrator (9.01)domino certificate authoritydomino configuration tuner

3、 eclipse update sit«9) feed contenthealth monitoring (9) issued c«rtificat«s list local document cache文件名 00 ccaso.ntf關(guān)子示惠級根板圉紺承以后的設(shè)計更改a)步驟二:xtr create certificate authority key ring在notes端打開新創(chuàng)建的數(shù)據(jù)痺authority.nsf, & certificatecertificateauthoritycertificate authority setup1. creat

4、e certificate authority key ring & certificatecertificateauthoritylonfiguratiori configure c«rh<k«u authority profile3. create server key ring & certificateservercertificaterequestsclientcertrficat*requestsclientregistrationrequestsviewcertificate authoritykey ring填寫表單內(nèi)容,common

5、name為服務(wù)器名;organization為組織名填寫完后點(diǎn)擊authority鯽會在本地notes的data r錄f創(chuàng)建cakey.kyr,將其拷貝至服務(wù)器的data目錄下。create certificate authority key ringthis fomyou create the ctrtificat* authority kty nn(key kinc inforaationk*y rin< file cakty. kyr j namekiy rin(r*jptsswordptssword verifyr*jor(«nization; lyxx jorctni

6、 zationtlj (option<l)unitcity or locdlity ; j (optional)s;ate or province jiansul) (no abbrevi &tions) country; cm j (two character country code)quick helpspecify th« file n«m« <nd password for the key rincprovides your unique identity 亀s t c«rlifictt« authority. t

7、his is lh< information that will display as th« issuer* in c«rti ficates that ycu sincreate certificate authority key ring i步驟四:.dozw/voserver certificateadministrationcrmtt <key rmqacedifktetcertificate intrylabeltrusted root key 纛<i& l«&uviewtedhk«y mnqiccrthic

8、att requestlogkeypalrnoc anoles<jatasertcert kyrc«rti fi call on antkori tiesbaltimore cybertrust root cayescanotesd3taseltcertkyrentrust wap cay«sc:viotesdatasellcertkyrbaltimore cytertrust mobile cayesc viotesdatasellcert kyrverisign class 3 public pnma7 certification authorityyescano

9、tesmjatavsettcertkyrverisign class 2 public pnma7 certification authorityyescv)otesdatasehcertkyrverisign class 1 pu wic pnma certification authorityyesc arolesvjatavseilcerl kyrvorisign class 1 public prtma7 certflcation authorityyesclnotesvjataxsertcerlkyrvdnsign class 2 public primay cerlrficabon

10、 authorityyescanotesdatasettcerlkyrverisign class 4 public pnmav certification authorityyescanolesvjatavsellcert kyrvensign class 3 public pnmai certiflcaaon authorityy«scanotesdatasel(certkyrentrust 2048diicac viot«sdau8eilcert kyrentrust global client caytsc anolesdatasertcert kyrentrust

11、 gssl cayescvioteskjataxsertcertkyreiibubl sslcayfebc.viutebvldtdvbellueflkytentrust client cayescarotesdatasertcertkyrverisign class 2 public pnmry certification authorityy«scanot«sdausertcertkyrverisign class 4 public pnmay certficabon authorityy«scv)otesdatasencertkyrvftnsign class

12、 1 public pnma certification authorityyescviolesvjauvsellcerlkytvdrislgn class 3 public primary certflcation authorityyescotesdatasettcerlkyt在 notes 端打開 server certificate admin 數(shù)據(jù)庫,點(diǎn)市”view and edit keyrhngs”,點(diǎn)市 “select key ring to display” “,輸入剛才保存的cakey的路徑,點(diǎn)擊確定,輸入剛才配罝的cakey的密碼。步驟五:點(diǎn)擊 create key ri

13、ng with self-certified certificatedo/w/voserver certificateadministrationcreate key rings & certificatesview & editkey ringsclick on the steps bdow to create an ssl key ring and populate it with certificates.1. create k«y ring2. create certafkate request3. in&tau trusted root certii

14、>cat« into key ring4. in&tatt certificate into key ringviewcertificate requestlogyou can also quickly create a key ringwith a se«<ertified certificate for testing purposes.create key rang with self-certified certificate填寫表單內(nèi)容,common name應(yīng)為對應(yīng)的服務(wù)器域名 organization應(yīng)為組織名點(diǎn)擊 create key r

15、ing with self-certified certificateth« dxstin(uishtd nt»« is the information about your si te that vkllin mtycertificates youhole: make sur« th« comon ntm« batches the url of your sit*. so«« brovstrs check the common nene and the si t« url, and do not all

16、ow a connection if they don t atlck.create key ring rith self-certified certificatekey kia< iaforoationk<y rin< fil«k*yfil*. kyrnimtk<y faszwrd r* j ptxxword verify: r*»*»*jtkis £or» l«ts you easily cr«tt« t kty ri&c with « s«lfmc

17、1;rtafi«d c«rtifxcat* for t«stinc purposes. th« resulting key ring is ready for use with ssl, but is not appropriate for 亀 product!on internet or intranet si te due to the eerti fieate bexnc sieved by yourself instead of < ctrtificatt authority.quick helpspecify tk« n

18、1;i< and password for tht k«y rin( £iumole: you'll bt r«f«rrin< to th« kty rxn< xnforattxon you ent«r here i£ you install additional trusted root c«rtx£ictt«s into the key rinc l«t«r.coh»on n«a«oautt. lyxs. sinop

19、tc. comor(«ni zationlyxsoranizational r j (optional)uritcity or locality (optiontl)st«t« or province ; ji tncxu j (no tbbrtvi ttions) ccuntry' cfjj (two chtrtcl«r country cod*)crtttt ky rin( with s»lf-ctrtified c«rtxfictl«點(diǎn)擊按鈕后,在本地notes的data目錄下生成2個文件data/keyfil

20、e.kyrdata/keyfile.sth將這2個文件拷貝至服務(wù)器的data目錄下步驟八:打開administrator,打開服務(wù)器文檔,要啟用ssl的443端口。接收ssl站點(diǎn)驗(yàn)證字tatvnote基本|安全性|破口 |服夯器任夯| internet協(xié)說. | »u . |雜項(xiàng)|奉*記錄|共車越件| daos | lotus trmur |管理 mottx剛搞口 | internet摘口|代理|sslss-密祖文件名ktyfilt. kyr jss-協(xié)設(shè)飯本調(diào)于隊(duì)http以外 的祈有協(xié)論):司協(xié)商的j cd榷費(fèi)ssl坫疰給證字:嚴(yán)t否榷費(fèi)勃期的ssl始證字漢是廣否ss-加密法:rc4加密(128 fes鈕和助5 iac)rc4加密(128位密鉬和

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
  • 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
  • 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

最新文檔

評論

0/150

提交評論