我想用我的spring应用程序使用REST服务.要访问该服务,我有一个客户端证书(自签名和.jks格式)进行授权.
对其他服务进行身份验证的正确方法是什么?
这是我的要求:
public ListSyntaxException {
HttpEntity> httpEntity = new HttpEntity<>(null,new HttpHeaders());
ResponseEntity
最佳答案
以下是使用RestTemplate和Apache HttpClient执行此操作的示例
原文链接:https://www.f2er.com/spring/431885.html您应该使用配置的SSL上下文定义自己的RestTemplate:
@Bean
public RestTemplate restTemplate(RestTemplateBuilder builder) throws Exception {
char[] password = "password".tocharArray();
SSLContext sslContext = SSLContextBuilder.create()
.loadKeyMaterial(keyStore("classpath:cert.jks",password),password)
.loadTrustMaterial(null,new TrustSelfSignedStrategy()).build();
HttpClient client = HttpClients.custom().setSSLContext(sslContext).build();
return builder
.requestFactory(new HttpComponentsClientHttpRequestFactory(client))
.build();
}
private KeyStore keyStore(String file,char[] password) throws Exception {
KeyStore keyStore = KeyStore.getInstance("PKCS12");
File key = ResourceUtils.getFile(file);
try (InputStream in = new FileInputStream(key)) {
keyStore.load(in,password);
}
return keyStore;
}
现在,此模板执行的所有远程调用都将使用cert.jks进行签名.
注意:您需要将cert.jks放入类路径中
@Autowired
private RestTemplate restTemplate;
public ListSyntaxException {
HttpEntity> httpEntity = new HttpEntity<>(null,new HttpHeaders());
ResponseEntity