From owner-freebsd-java@FreeBSD.ORG Thu Oct 2 02:55:02 2003 Return-Path: Delivered-To: freebsd-java@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id D370616A4B3 for ; Thu, 2 Oct 2003 02:55:02 -0700 (PDT) Received: from mail18.svr.pol.co.uk (mail18.svr.pol.co.uk [195.92.67.23]) by mx1.FreeBSD.org (Postfix) with ESMTP id EE03743FE5 for ; Thu, 2 Oct 2003 02:54:59 -0700 (PDT) (envelope-from james@gamepub.com) Received: from modem-11.chimpanzee.dialup.pol.co.uk ([217.134.112.11] helo=reale) by mail18.svr.pol.co.uk with smtp (Exim 4.14) id 1A50Ai-0007g5-Ky for freebsd-java@freebsd.org; Thu, 02 Oct 2003 10:54:57 +0100 Message-ID: <001701c388cb$3cefc130$0b7086d9@reale> From: "James Adams" To: Date: Thu, 2 Oct 2003 10:54:56 +0100 MIME-Version: 1.0 X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.1 Subject: /usr/local/jdk1.4.1/jre/lib/security/cacerts X-BeenThere: freebsd-java@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Porting Java to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 02 Oct 2003 09:55:03 -0000 Hello, I saw a post of yours on the Java on FreeBSD mailing list back in = August. I'm trying to get Java + SSL working on native Java 1.4.1 port, for = JBoss/Jetty. I replaced the cacerts file as you mention below, but I'm still having = trouble with it. It just seems to hang when trying to do anything = involving ssl, including using keytool. Did you ever get SSL working on FreeBSD with the native Java 1.4.1 port? Any help will be much appreciated regards James >Hi, > >I'm trying out my hand on Java+SSL, and have discovered that: > > /usr/local/jdk1.4.1/jre/lib/security/cacerts > >is only 32 bytes long. This can't be correct; shouldn't it have the CA >for people like Verisign and Thawte? I substituted it with one I got = off >a Windows box (which was about 11k big), and that seemed to work fine. > >Is this a packaging bug? Or some deliberate thing I don't know about? > >Cheers. >--=20 >Jonathan Chen