Details
-
Bug
-
Status: Resolved
-
Minor
-
Resolution: Fixed
-
None
-
None
-
None
Description
The TLS Toolkit in Standalone Mode supports the option to generate one or more Client Key Stores. The Standalone Mode generates a Key Pair with a signed Certificate for each client requested and uses a null when adding the Private Key Entry to the Key Store. This approach causes an UnrecoverableKeyException when attempting to read the generated PKCS12 Key Store. The implementation should be corrected to set a Key Password using the value provided for the Key Store Password, which is the standard approach for PKCS12.
Attachments
Issue Links
- is related to
-
NIFI-10929 NiFi generated certificates (e.g. Single User, or nifi-toolkit) are not compatible with OpenSSL 3.x+
- Resolved
-
NIFI-10932 NiFi Toolkit CLI cannot connect to NiFi - trustAnchors parameter must be non-empty
- Resolved
- links to