Skip to content
This repository has been archived by the owner on Nov 17, 2023. It is now read-only.

configure ssl keystore #2

Open
BraunreutherA opened this issue May 14, 2015 · 2 comments
Open

configure ssl keystore #2

BraunreutherA opened this issue May 14, 2015 · 2 comments

Comments

@BraunreutherA
Copy link

The jvm keystore needs to get configured in the crowd container like so:

convert crt and key into .der format and use this command:
$JAVA_HOME/jre/bin/keytool -import -v -storetype jks -keystore $JAVA_HOME/jre/lib/security/cacerts -alias example.com -file /etc/ssl/secure/example.com.der -keypass /etc/ssl/secure/example.com.nopass.der

otherwise crowd complains about the ssl connection during installation.

Is it possible to automate this?

@giovannicandido
Copy link
Member

I think is possible, but not straightforward, the question is when this would run, and where the certification will be placed.
It could run when the container start, the flag could be the ENV variables, but the crowd container do not have access to the certification files by default because it is handled in the nginx container, and will import many times on each start

I need to get my hands dirty to know better.

@BraunreutherA
Copy link
Author

thanks for your support :) I don't know to much about building docker containers, but i would help you about finding the right configuration if you want.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants