// Licensed to the Apache Software Foundation (ASF) under one // or more contributor license agreements. See the NOTICE file // distributed with this work for additional information // regarding copyright ownership. The ASF licenses this file // to you under the Apache License, Version 2.0 (the // "License"); you may not use this file except in compliance // with the License. You may obtain a copy of the License at // // http://www.apache.org/licenses/LICENSE-2.0 // // Unless required by applicable law or agreed to in writing, // software distributed under the License is distributed on an // "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY // KIND, either express or implied. See the License for the // specific language governing permissions and limitations // under the License. package streamer.ssl; import java.security.cert.X509Certificate; import javax.net.ssl.X509TrustManager; public class TrustAllX509TrustManager implements X509TrustManager { private SSLState sslState; public TrustAllX509TrustManager(SSLState sslState) { this.sslState = sslState; } @Override public void checkClientTrusted(final X509Certificate[] chain, final String authType) { // TODO: ask user to confirm self-signed certificates // Trust all (insecure) } @Override public void checkServerTrusted(final X509Certificate[] chain, final String authType) { // TODO: ask user to confirm self-signed certificates // Trust all (insecure) // Store public certificates to use for NTLMSSP negotiation if (sslState != null) sslState.serverCertificateSubjectPublicKeyInfo = chain[0].getPublicKey().getEncoded(); } @Override public X509Certificate[] getAcceptedIssuers() { // TODO: use system CA certificates here return null; } }