java.security.cert.CertificateParsingException:签名字段无效 [英] java.security.cert.CertificateParsingException: signed fields invalid

查看:1978
本文介绍了java.security.cert.CertificateParsingException:签名字段无效的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

我正在尝试读取 X509证书

  FileInputStream fr =新的FileInputStream( suresh.pfx); 
CertificateFactory cf = CertificateFactory.getInstance( X509);
X509Certificate c =(X509Certificate)cf.generateCertificate(fr);

并遇到例外情况

  java.security.cert.CertificateParsingException:签名的字段在sun.security.x509.X509CertImpl.parse(未知源)处的
无效(未知源)在sun.security.x509.X509CertImpl处的
。< init>(未知来源)
在sun.security.provider.X509Factory.engineGenerateCertificate(未知来源)
在java.security.cert.CertificateFactory.generateCertificate(未知来源)
在com.nextenders.certificategeenrator.CertificateGenerator.testGenerateSignCertWithKeyStore(CertificateGenerator.java:102)
at com.nextenders.certificategeenrator.CertificateGenerator.main(CertificateGenerator.java:65)


Oracle论坛没有解决方案。



有任何提示吗?

解决方案

PFX不是证书,而是ak



要获取证书,您必须将pfx加载到密钥库中,然后获取证书:

  InputStream certIs = new FileInputStream( suresh.pfx); 
Keystore ks = KeyStore.getInstance( PKCS12);
ks.load(certIs.getInputStream(), password .toCharArray());
证书cert = ks.getCertificate( alias);

致谢


I'm trying to read a X509 certificate

FileInputStream fr = new FileInputStream("suresh.pfx");
CertificateFactory cf =   CertificateFactory.getInstance("X509");
X509Certificate c = (X509Certificate) cf.generateCertificate(fr); 

And run in to the exception

java.security.cert.CertificateParsingException: signed fields invalid
    at sun.security.x509.X509CertImpl.parse(Unknown Source)
    at sun.security.x509.X509CertImpl.<init>(Unknown Source)
    at sun.security.provider.X509Factory.engineGenerateCertificate(Unknown Source)
    at java.security.cert.CertificateFactory.generateCertificate(Unknown Source)
    at com.nextenders.certificategeenrator.CertificateGenerator.testGenerateSignCertWithKeyStore(CertificateGenerator.java:102)
    at com.nextenders.certificategeenrator.CertificateGenerator.main(CertificateGenerator.java:65)

Found something related to it from Oracle forum with no solution.

Any hints ?

解决方案

PFX isn't a certificate but a keystore in itself.

To get the certificate you have to load the pfx into a keystore and then get the certificate:

InputStream certIs=new FileInputStream("suresh.pfx");
Keystore ks=KeyStore.getInstance("PKCS12");
ks.load(certIs.getInputStream(),"password".toCharArray());
Certificate cert=ks.getCertificate("alias");

Regards

这篇关于java.security.cert.CertificateParsingException:签名字段无效的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
相关文章
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆