Uploaded image for project: 'ActiveMQ Apollo (Retired)'
  1. ActiveMQ Apollo (Retired)
  2. APLO-341

SSL server configuration does not support separate truststore

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Won't Do
    • 1.6
    • 1.8
    • apollo-dto
    • Windows 7 Java: Suspect all environements

    Description

      When trying to configure the apollo broker to support client authentication there is no support for placing trusted client certificates in a separate truststore. One must place the certificates in the keystore containing the server's private key.

      The common practice (as also done in ActiveMQ) is to place trusted certificates in a truststore that contains only trusted certificates (one may wish to interactively add trusted client certificates to this truststore) whereas the keystore containing the private key is locked up tight as a drum.

      Attachments

        Activity

          People

            chirino Hiram R. Chirino
            gyannea Brian Reinhold
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: