How to connect to a queue manager with ssl enabled server connection channel when authentication is

Posted by Dr. Xray on Stack Overflow See other posts from Stack Overflow or by Dr. Xray
Published on 2009-11-30T17:57:41Z Indexed on 2010/03/31 1:23 UTC
Read the original article Hit count: 473

Filed under:
|
|

I am trying to write a java application connecting to server connection channel with SSL enabled.

So far, I have been successfully connected to the channel by setting authentication to 'optional'. However, when I set it to be 'required', the connection fails.

Here is what I did:

  1. Create key db for queue manager and keystore for the java client user.
  2. Create key/self-signed certificates for the queue manager and the client user, with names prefixed ibmwebspheremq.
  3. Export, exchange and import certificates for the queue manager and the client. (I did answered 'yes' when being asked whether I trust the queue manager cert).
  4. The location and password to the truststore and keystore are set to point to the same keystore at the client side, where the orgininal created client user key and the imported queue manager key are.

With other settings being the same, if I switch back to 'optional' authentication, the connection works.

I think there is something I understand incorrectly about this ssl authenticaion but cannot figure out what.

Could someone kindly help me?

© Stack Overflow or respective owner

Related posts about ibm-mq

Related posts about ssl