ASG
IBM
Zystems
Cressida
Icon
Netflexity
 
  MQSeries.net
Search  Search       Tech Exchange      Education      Certifications      Library      Info Center      SupportPacs      LinkedIn  Search  Search                                                                   FAQ  FAQ   Usergroups  Usergroups
 
Register  ::  Log in Log in to check your private messages
 
RSS Feed - WebSphere MQ Support RSS Feed - Message Broker Support

MQSeries.net Forum Index » IBM MQ Java / JMS » JMS and SSL Problem (SunX509 not available)

Post new topic  Reply to topic
 JMS and SSL Problem (SunX509 not available) « View previous topic :: View next topic » 
Author Message
lwl
PostPosted: Tue Oct 26, 2004 2:32 am    Post subject: JMS and SSL Problem (SunX509 not available) Reply with quote

Apprentice

Joined: 30 Mar 2004
Posts: 41

Hi

I use MQ 5.3 and WBIMB 5 in solaris platform for PUB/SUB. I want to use MQ Client connection with SSL to Broker's QM.

I have self-signed certifications for QM and Client.

The MQ Server, SVRCONN channel and TCF are setup with SSL.

I tried to run a simple JMSPublisher program (mqjmspub, downloaded from "http://www.developer.ibm.com/tech/sampmq.html") with the following JVM parameters
java -Djavax.net.ssl.keyStore=/opt/mqm/ssl/cert/clientkeys.jks -Djavax.net.ssl.keyStorePassword=abcabc -Djavax.net.ssl.trustStore=/opt/mqm/ssl/cert/clienttrusts.jks -Djavax.net.ssl.trustStorePassword=abcabc mqjmspub

But the program failed with the following error:

mqjmspub started....
keyStore is : /opt/mqm/ssl/cert/clientkeys.jks
keyStore type is : jks
init keystore
init keymanager of type SunX509
default context init failed: java.security.PrivilegedActionException <<java.security.NoSuchAlgorithmException: Algorithm SunX509 not available>>
JMS Exception: javax.jms.JMSException: MQJMS2005: failed to create MQQueueManager for '130.18.52.25:DQMCIBMHK003'
Linked exception: com.ibm.mq.MQException: MQJE001: An MQException occurred: Completion Code 2, Reason 2059
MQJE013: Error accessing socket streams
java.lang.NullPointerException
at mqjmspub.run(mqjmspub.java:290)
at java.lang.Thread.run(Thread.java:484)


Do you have any ideas ???

Thank you
lwl
Back to top
View user's profile Send private message
lwl
PostPosted: Tue Oct 26, 2004 3:17 am    Post subject: Reply with quote

Apprentice

Joined: 30 Mar 2004
Posts: 41

I fix the 2059 error by update the file $JAVA_HOME/lib/security/java_security..

Now I got this new error (with SSL debug turn on). Could you help?

^^^
mqjmspub started....
keyStore is : /opt/mqm/ssl/cert/clientkeys.jks
keyStore type is : jks
init keystore
init keymanager of type SunX509
***
found key for : ibmwebspheremqlwl
chain [0] = [
[
Version: V3
Subject: CN=lwl, OU=MQ User, O=HSBC, C=HK
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@16c1b0
Validity: [From: Thu Oct 21 11:40:18 HKT 2004,
To: Fri Oct 21 11:40:18 HKT 2005]
Issuer: CN=lwl, OU=MQ User, O=HSBC, C=HK
SerialNumber: [ 41772fa2 ]

]
Algorithm: [MD5withRSA]
Signature:
0000: 44 34 1D ED D7 6C 71 B2 EC 90 C7 F9 03 F0 DA 7B D4...lq.........
0010: BF 34 8C 9C 8C 7A 99 C3 AA D3 EA A2 1E 44 7D E2 .4...z.......D..
0020: B1 A4 18 F9 4C 6C BD B5 DE 06 B3 E5 96 68 06 44 ....Ll.......h.D
0030: CE 05 88 2C 51 DB 1B EE BF F9 E5 37 76 94 DE 8F ...,Q......7v...
0040: 9B 36 94 A9 56 94 45 22 FC D2 FF 0F AD 4C 4A 2F .6..V.E".....LJ/
0050: 27 20 1D 4B B9 66 D0 33 49 8A 4B 31 E9 6E B3 AF ' .K.f.3I.K1.n..
0060: B8 51 96 F8 8E 8D E8 FD 52 8D 20 6F 27 5A CE A2 .Q......R. o'Z..
0070: E9 71 7F A0 15 0F 96 E2 86 A6 AC EC AA DA 5D 4E .q............]N

]
***
trustStore is: /opt/mqm/ssl/cert/clienttrusts.jks
trustStore type is : jks
init truststore
adding as trusted cert: [
[
Version: V3
Subject: EmailAddress=personal-freemail@thawte.com, CN=Thawte Personal Freemail CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@1b5393
Validity: [From: Mon Jan 01 08:00:00 HKT 1996,
To: Fri Jan 01 07:59:59 HKT 2021]
Issuer: EmailAddress=personal-freemail@thawte.com, CN=Thawte Personal Freemail CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
SerialNumber: [ 0 ]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

]
Algorithm: [MD5withRSA]
Signature:
0000: C7 EC 92 7E 4E F8 F5 96 A5 67 62 2A A4 F0 4D 11 ....N....gb*..M.
0010: 60 D0 6F 8D 60 58 61 AC 26 BB 52 35 5C 08 CF 30 `.o.`Xa.&.R5\..0
0020: FB A8 4A 96 8A 1F 62 42 23 8C 17 0F F4 BA 64 9C ..J...bB#.....d.
0030: 17 AC 47 29 DF 9D 98 5E D2 6C 60 71 5C A2 AC DC ..G)...^.l`q\...
0040: 79 E3 E7 6E 00 47 1F B5 0D 28 E8 02 9D E4 9A FD y..n.G...(......
0050: 13 F4 A6 D9 7C B1 F8 DC 5F 23 26 09 91 80 73 D0 ........_#&...s.
0060: 14 1B DE 43 A9 83 25 F2 E6 9C 2F 15 CA FE A6 AB ...C..%.../.....
0070: 8A 07 75 8B 0C DD 51 84 6B E4 F8 D1 CE 77 A2 81 ..u...Q.k....w..

]
adding as trusted cert: [
[
Version: V3
Subject: OU=www.verisign.com/CPS Incorp.by Ref. LIABILITY LTD.(c)97 VeriSign, OU=VeriSign International Server CA - Class 3, OU="VeriSign, Inc.", O=VeriSign Trust Network
Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@4fce71
Validity: [From: Thu Apr 17 08:00:00 HKT 1997,
To: Tue Oct 25 07:59:59 HKT 2011]
Issuer: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
SerialNumber: [ 254b8a85 3842cce3 58f8c5dd ae226ea4 ]

Certificate Extensions: 6
[1]: ObjectId: 2.16.840.1.113730.1.1 Criticality=false
NetscapeCertType [
SSL CA
S/MIME CA
]

[2]: ObjectId: 2.5.29.32 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 3D 30 3B 30 39 06 0B 60 86 48 01 86 F8 45 01 .=0;09..`.H...E.
0010: 07 01 01 30 2A 30 28 06 08 2B 06 01 05 05 07 02 ...0*0(..+......
0020: 01 16 1C 68 74 74 70 73 3A 2F 2F 77 77 77 2E 76 ...https://www.v
0030: 65 72 69 73 69 67 6E 2E 63 6F 6D 2F 43 50 53 erisign.com/CPS


[3]: ObjectId: 2.5.29.31 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2A 30 28 30 26 A0 24 A0 22 86 20 68 74 74 70 .*0(0&.$.". http
0010: 3A 2F 2F 63 72 6C 2E 76 65 72 69 73 69 67 6E 2E ://crl.verisign.
0020: 63 6F 6D 2F 70 63 61 33 2E 63 72 6C com/pca3.crl


[4]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]

[5]: ObjectId: 2.5.29.37 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2D 30 2B 06 08 2B 06 01 05 05 07 03 01 06 08 .-0+..+.........
0010: 2B 06 01 05 05 07 03 02 06 09 60 86 48 01 86 F8 +.........`.H...
0020: 42 04 01 06 0A 60 86 48 01 86 F8 45 01 08 01 B....`.H...E...


[6]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]

]
Algorithm: [SHA1withRSA]
Signature:
0000: 08 01 EC E4 68 94 03 42 F1 73 F1 23 A2 3A DE E9 ....h..B.s.#.:..
0010: F1 DA C6 54 C4 23 3E 86 EA CF 6A 3A 33 AB EA 9C ...T.#>...j:3...
0020: 04 14 07 36 06 0B F9 88 6F D5 13 EE 29 2B C3 E4 ...6....o...)+..
0030: 72 8D 44 ED D1 AC 20 09 2D E1 F6 E1 19 05 38 B0 r.D... .-.....8.
0040: 3D 0F 9F 7F F8 9E 02 DC 86 02 86 61 4E 26 5F 5E =..........aN&_^
0050: 9F 92 1E 0C 24 A4 F5 D0 70 13 CF 26 C3 43 3D 49 ....$...p..&.C=I
0060: 1D 9E 82 2E 52 5F BC 3E C6 66 29 01 8E 4E 92 2C ....R_.>.f)..N.,
0070: BC 46 75 03 82 AC 73 E9 D9 7E 0B 67 EF 54 52 1A .Fu...s....g.TR.

]
adding as trusted cert: [
[
Version: V1
Subject: OU=Class 2 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
Signature Algorithm: MD2withRSA, OID = 1.2.840.113549.1.1.2

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@7a8a02
Validity: [From: Mon Jan 29 08:00:00 HKT 1996,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=Class 2 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
SerialNumber: [ 2d1bfc4a 178da391 ebe7fff5 8b45be0b ]

]
Algorithm: [MD2withRSA]
Signature:
0000: 8A 1B 2B FA 39 C1 74 D7 5E D8 19 64 A2 58 4A 2D ..+.9.t.^..d.XJ-
0010: 37 E0 33 47 0F AC ED F7 AA DB 1E E4 8B 06 5C 60 7.3G..........\`
0020: 27 CA 45 52 CE 16 EF 3F 06 64 E7 94 68 7C 60 33 '.ER...?.d..h.`3
0030: 15 11 69 AF 9D 62 8D A3 03 54 6B A6 BE E5 EE 05 ..i..b...Tk.....
0040: 18 60 04 BF 42 80 FD D0 A8 A8 1E 01 3B F7 A3 5C .`..B.......;..\
0050: AF A3 DC E6 26 80 23 3C B8 44 74 F7 0A AE 49 8B ....&.#<.Dt...I.
0060: 61 78 CC 24 BF 88 8A A7 0E EA 73 19 41 FD 4D 03 ax.$......s.A.M.
0070: F0 88 D1 E5 78 8D A5 2A 4F F6 97 0D 17 77 CA D8 ....x..*O....w..

]
adding as trusted cert: [
[
Version: V3
Subject: EmailAddress=personal-basic@thawte.com, CN=Thawte Personal Basic CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@474f37
Validity: [From: Mon Jan 01 08:00:00 HKT 1996,
To: Fri Jan 01 07:59:59 HKT 2021]
Issuer: EmailAddress=personal-basic@thawte.com, CN=Thawte Personal Basic CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
SerialNumber: [ 0 ]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

]
Algorithm: [MD5withRSA]
Signature:
0000: 2D E2 99 6B B0 3D 7A 89 D7 59 A2 94 01 1F 2B DD -..k.=z..Y....+.
0010: 12 4B 53 C2 AD 7F AA A7 00 5C 91 40 57 25 4A 38 .KS......\.@W%J8
0020: AA 84 70 B9 D9 80 0F A5 7B 5C FB 73 C6 BD D7 8A ..p......\.s....
0030: 61 5C 03 E3 2D 27 A8 17 E0 84 85 42 DC 5E 9B C6 a\..-'.....B.^..
0040: B7 B2 6D BB 74 AF E4 3F CB A7 B7 B0 E0 5D BE 78 ..m.t..?.....].x
0050: 83 25 94 D2 DB 81 0F 79 07 6D 4F F4 39 15 5A 52 .%.....y.mO.9.ZR
0060: 01 7B DE 32 D6 4D 38 F6 12 5C 06 50 DF 05 5B BD ...2.M8..\.P..[.
0070: 14 4B A1 DF 29 BA 3B 41 8D F7 63 56 A1 DF 22 B1 .K..).;A..cV..".

]
adding as trusted cert: [
[
Version: V3
Subject: OU=VeriSign Class 2 OnSite Individual CA, O=VeriSign
Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@21b220
Validity: [From: Tue May 19 08:00:00 HKT 1998,
To: Tue Oct 13 07:59:59 HKT 2009]
Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 2 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
SerialNumber: [ 43de4506 7e91ed3b b670e417 526649b5 ]

Certificate Extensions: 5
[1]: ObjectId: 2.16.840.1.113730.1.1 Criticality=false
NetscapeCertType [
SSL CA
S/MIME CA
]

[2]: ObjectId: 2.5.29.32 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 3D 30 3B 30 39 06 0B 60 86 48 01 86 F8 45 01 .=0;09..`.H...E.
0010: 07 17 02 30 2A 30 28 06 08 2B 06 01 05 05 07 02 ...0*0(..+......
0020: 01 16 1C 68 74 74 70 73 3A 2F 2F 77 77 77 2E 76 ...https://www.v
0030: 65 72 69 73 69 67 6E 2E 63 6F 6D 2F 72 70 61 erisign.com/rpa


[3]: ObjectId: 2.5.29.31 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2D 30 2B 30 29 A0 27 A0 25 86 23 68 74 74 70 .-0+0).'.%.#http
0010: 3A 2F 2F 63 72 6C 2E 76 65 72 69 73 69 67 6E 2E ://crl.verisign.
0020: 63 6F 6D 2F 70 63 61 32 2D 67 32 2E 63 72 6C com/pca2-g2.crl


[4]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]

[5]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]

]
Algorithm: [SHA1withRSA]
Signature:
0000: 89 90 BE AE 73 95 DC 42 1E 4D A0 8F EF 02 FB A9 ....s..B.M......
0010: 68 5B 0B ED 2C 45 B3 88 EB 8E 4E CF 34 8A A6 35 h[..,E....N.4..5
0020: 0E 83 8C D0 B4 13 2F EB AA 95 FC 36 7E 68 85 9C ....../....6.h..
0030: FC 37 59 53 CA B9 0C 06 84 E1 3B 64 07 0B 21 34 .7YS......;d..!4
0040: 44 75 88 37 36 C5 B5 58 0D A8 38 3B AF A0 61 B8 Du.76..X..8;..a.
0050: 7C 6C 17 9F E1 FF E1 DA 43 A8 42 86 02 5D 4A ED .l......C.B..]J.
0060: 9C 90 8D 12 AA 4C C2 6E 03 98 1F 43 AF 7E 9B 49 .....L.n...C...I
0070: B5 B4 74 A3 6E AD 6A 5B EB 2F B1 CB 9A 1E A6 9A ..t.n.j[./......

]
adding as trusted cert: [
[
Version: V3
Subject: EmailAddress=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@79717e
Validity: [From: Thu Aug 01 08:00:00 HKT 1996,
To: Fri Jan 01 07:59:59 HKT 2021]
Issuer: EmailAddress=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA
SerialNumber: [ 01]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

]
Algorithm: [MD5withRSA]
Signature:
0000: 26 48 2C 16 C2 58 FA E8 16 74 0C AA AA 5F 54 3F &H,..X...t..._T?
0010: F2 D7 C9 78 60 5E 5E 6E 37 63 22 77 36 7E B2 17 ...x`^^n7c"w6...
0020: C4 34 B9 F5 08 85 FC C9 01 38 FF 4D BE F2 16 42 .4.......8.M...B
0030: 43 E7 BB 5A 46 FB C1 C6 11 1F F1 4A B0 28 46 C9 C..ZF......J.(F.
0040: C3 C4 42 7D BC FA AB 59 6E D5 B7 51 88 11 E3 A4 ..B....Yn..Q....
0050: 85 19 6B 82 4C A4 0C 12 AD E9 A4 AE 3F F1 C3 49 ..k.L.......?..I
0060: 65 9A 8C C5 C8 3E 25 B7 94 99 BB 92 32 71 07 F0 e....>%.....2q..
0070: 86 5E ED 50 27 A6 0D A6 23 F9 BB CB A6 07 14 42 .^.P'...#......B

]
adding as trusted cert: [
[
Version: V1
Subject: OU=Secure Server Certification Authority, O="RSA Data Security, Inc.", C=US
Signature Algorithm: MD2withRSA, OID = 1.2.840.113549.1.1.2

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@a2d64
Validity: [From: Wed Nov 09 08:00:00 HKT 1994,
To: Fri Jan 08 07:59:59 HKT 2010]
Issuer: OU=Secure Server Certification Authority, O="RSA Data Security, Inc.", C=US
SerialNumber: [ 02ad667e 4e45fe5e 576f3c98 195eddc0 ]

]
Algorithm: [MD2withRSA]
Signature:
0000: 65 DD 7E E1 B2 EC B0 E2 3A E0 EC 71 46 9A 19 11 e.......:..qF...
0010: B8 D3 C7 A0 B4 03 40 26 02 3E 09 9C E1 12 B3 D1 ......@&.>......
0020: 5A F6 37 A5 B7 61 03 B6 5B 16 69 3B C6 44 08 0C Z.7..a..[.i;.D..
0030: 88 53 0C 6B 97 49 C7 3E 35 DC 6C B9 BB AA DF 5C .S.k.I.>5.l....\
0040: BB 3A 2F 93 60 B6 A9 4B 4D F2 20 F7 CD 5F 7F 64 .:/.`..KM. .._.d
0050: 7B 8E DC 00 5C D7 FA 77 CA 39 16 59 6F 0E EA D3 ....\..w.9.Yo...
0060: B5 83 7F 4D 4D 42 56 76 B4 C9 5F 04 F8 38 F8 EB ...MMBVv.._..8..
0070: D2 5F 75 5F CD 7B FC E5 8E 80 7C FC 50 ._u_........P

]
adding as trusted cert: [
[
Version: V1
Subject: OU=Class 1 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
Signature Algorithm: MD2withRSA, OID = 1.2.840.113549.1.1.2

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@2a3722
Validity: [From: Mon Jan 29 08:00:00 HKT 1996,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=Class 1 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
SerialNumber: [ cdba7f56 f0dfe4bc 54fe22ac b372aa55 ]

]
Algorithm: [MD2withRSA]
Signature:
0000: 4C 3F B8 8B C6 68 DF EE 43 33 0E 5D E9 A6 CB 07 L?...h..C3.]....
0010: 84 4D 7A 33 FF 92 1B F4 36 AD D8 95 22 36 68 11 .Mz3....6..."6h.
0020: 6C 7C 42 CC F3 9C 2E C4 07 3F 14 B0 0F 4F FF 90 l.B......?...O..
0030: 92 76 F9 E2 BC 4A E9 8F CD A0 80 0A F7 C5 29 F1 .v...J........).
0040: 82 22 5D B8 B1 DD 81 23 A3 7B 25 15 46 30 79 16 ."]....#..%.F0y.
0050: F8 EA 05 4B 94 7F 1D C2 1C C8 E3 B7 F4 10 40 3C ...K..........@<
0060: 13 C3 5F 1F 53 E8 48 E4 86 B4 7B A1 35 B0 7B 25 .._.S.H.....5..%
0070: BA B8 D3 8E AB 3F 38 9D 00 34 00 98 F3 D1 71 94 .....?8..4....q.

]
adding as trusted cert: [
[
Version: V3
Subject: EmailAddress=server-certs@thawte.com, CN=Thawte Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@9cf1e
Validity: [From: Thu Aug 01 08:00:00 HKT 1996,
To: Fri Jan 01 07:59:59 HKT 2021]
Issuer: EmailAddress=server-certs@thawte.com, CN=Thawte Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA
SerialNumber: [ 01]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

]
Algorithm: [MD5withRSA]
Signature:
0000: 07 FA 4C 69 5C FB 95 CC 46 EE 85 83 4D 21 30 8E ..Li\...F...M!0.
0010: CA D9 A8 6F 49 1A E6 DA 51 E3 60 70 6C 84 61 11 ...oI...Q.`pl.a.
0020: A1 1A C8 48 3E 59 43 7D 4F 95 3D A1 8B B7 0B 62 ...H>YC.O.=....b
0030: 98 7A 75 8A DD 88 4E 4E 9E 40 DB A8 CC 32 74 B9 .zu...NN.@...2t.
0040: 6F 0D C6 E3 B3 44 0B D9 8A 6F 9A 29 9B 99 18 28 o....D...o.)...(
0050: 3B D1 E3 40 28 9A 5A 3C D5 B5 E7 20 1B 8B CA A4 ;..@(.Z<... ....
0060: AB 8D E9 51 D9 E2 4C 2C 59 A9 DA B9 B2 75 1B F6 ...Q..L,Y....u..
0070: 42 F2 EF C7 F2 18 F9 89 BC A3 FF 8A 23 2E 70 47 B...........#.pG

]
adding as trusted cert: [
[
Version: V3
Subject: CN=VeriSign Class 1 CA Individual Subscriber-Persona Not Validated, OU="www.verisign.com/repository/RPA Incorp. By Ref.,LIAB.LTD(c)98", OU=VeriSign Trust Network, O="VeriSign, Inc."
Signature Algorithm: MD2withRSA, OID = 1.2.840.113549.1.1.2

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@7ce4e7
Validity: [From: Tue May 12 08:00:00 HKT 1998,
To: Tue May 13 07:59:59 HKT 2008]
Issuer: OU=Class 1 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
SerialNumber: [ 0d8b4fee aad2185b f4756a9d 29e17ffb ]

Certificate Extensions: 5
[1]: ObjectId: 2.16.840.1.113730.1.1 Criticality=false
NetscapeCertType [
SSL CA
S/MIME CA
]

[2]: ObjectId: 2.5.29.32 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 40 30 3E 30 3C 06 0B 60 86 48 01 86 F8 45 01 .@0>0<..`.H...E.
0010: 07 01 01 30 2D 30 2B 06 08 2B 06 01 05 05 07 02 ...0-0+..+......
0020: 01 16 1F 77 77 77 2E 76 65 72 69 73 69 67 6E 2E ...www.verisign.
0030: 63 6F 6D 2F 72 65 70 6F 73 69 74 6F 72 79 2F 52 com/repository/R
0040: 50 41 PA


[3]: ObjectId: 2.5.29.31 Criticality=false
Extension unknown: DER encoded OCTET string =
0000: 04 2E 30 2C 30 2A A0 28 A0 26 86 24 68 74 74 70 ..0,0*.(.&.$http
0010: 3A 2F 2F 63 72 6C 2E 76 65 72 69 73 69 67 6E 2E ://crl.verisign.
0020: 63 6F 6D 2F 70 63 61 31 2E 31 2E 31 2E 63 72 6C com/pca1.1.1.crl


[4]: ObjectId: 2.5.29.15 Criticality=false
KeyUsage [
Key_CertSign
Crl_Sign
]

[5]: ObjectId: 2.5.29.19 Criticality=false
BasicConstraints:[
CA:true
PathLen:0
]

]
Algorithm: [MD2withRSA]
Signature:
0000: 42 7C 0E DF 8C 79 4C AC BF 08 EC 4D 55 2F 50 89 B....yL....MU/P.
0010: A0 C5 5E 4E 2E 5E 95 32 9B 79 AD 65 11 0B 1C 4A ..^N.^.2.y.e...J
0020: 52 C4 D5 A8 31 21 8E DE 10 9B 6C 08 C5 07 E6 03 R...1!....l.....
0030: B9 E7 C8 34 78 09 09 F2 BC 06 42 F8 5A 8C 83 D1 ...4x.....B.Z...
0040: 8A DE AA 22 F5 D9 E3 21 D2 CF 65 8C 06 33 B0 CD ..."...!..e..3..
0050: 20 B2 33 CD 0A BD 3E E1 9D C1 35 A9 64 B0 A7 A5 .3...>...5.d...
0060: 24 5B E9 F1 68 EB 13 C4 7C 37 F4 94 64 0D 9A C5 $[..h....7..d...
0070: BD 33 17 EF 83 33 A0 3E E5 AA 3E AE D8 73 1F AD .3...3.>..>..s..

]
adding as trusted cert: [
[
Version: V3
Subject: CN=DQMCIBMHK003, OU=Queue Manager, O=HSBC, C=HK
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@4fec48
Validity: [From: Wed Oct 20 11:28:58 HKT 2004,
To: Fri Oct 21 11:28:58 HKT 2005]
Issuer: CN=DQMCIBMHK003, OU=Queue Manager, O=HSBC, C=HK
SerialNumber: [ 41772cfa ]

]
Algorithm: [MD5withRSA]
Signature:
0000: 41 13 BA 5A 89 73 1B AE 7B 0F FA A9 7A A3 C3 DB A..Z.s......z...
0010: 1F FF 10 D7 B7 34 09 23 6E 97 AA 72 36 ED 29 14 .....4.#n..r6.).
0020: 70 76 EF E1 39 93 45 E4 FC 49 CE AC 31 DE 78 39 pv..9.E..I..1.x9
0030: 10 9F 88 E0 91 AE C9 49 31 B3 C4 1B 8E CF 10 63 .......I1......c
0040: 74 E6 4F 87 83 58 01 0A C2 9C 1A D3 20 88 08 5C t.O..X...... ..\
0050: F3 6B 6D 5A 35 34 57 CB 39 34 99 5C 2F 03 8D 57 .kmZ54W.94.\/..W
0060: 31 CC D6 26 37 63 D0 33 41 46 D8 37 35 06 BC CF 1..&7c.3AF.75...
0070: 21 35 91 A7 3F F8 98 BD 29 F3 C2 34 19 E9 38 18 !5..?...)..4..8.

]
adding as trusted cert: [
[
Version: V1
Subject: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
Signature Algorithm: MD2withRSA, OID = 1.2.840.113549.1.1.2

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@217083
Validity: [From: Mon Jan 29 08:00:00 HKT 1996,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US
SerialNumber: [ 70bae41d 10d92934 b638ca7b 03ccbabf ]

]
Algorithm: [MD2withRSA]
Signature:
0000: BB 4C 12 2B CF 2C 26 00 4F 14 13 DD A6 FB FC 0A .L.+.,&.O.......
0010: 11 84 8C F3 28 1C 67 92 2F 7C B6 C5 FA DF F0 E8 ....(.g./.......
0020: 95 BC 1D 8F 6C 2C A8 51 CC 73 D8 A4 C0 53 F0 4E ....l,.Q.s...S.N
0030: D6 26 C0 76 01 57 81 92 5E 21 F1 D1 B1 FF E7 D0 .&.v.W..^!......
0040: 21 58 CD 69 17 E3 44 1C 9C 19 44 39 89 5C DC 9C !X.i..D...D9.\..
0050: 00 0F 56 8D 02 99 ED A2 90 45 4C E4 BB 10 A4 3D ..V......EL....=
0060: F0 32 03 0E F1 CE F8 E8 C9 51 8C E6 62 9F E6 9F .2.......Q..b...
0070: C0 7D B7 72 9C C9 36 3A 6B 9F 4E A8 FF 64 0D 64 ...r..6:k.N..d.d

]
adding as trusted cert: [
[
Version: V1
Subject: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@61d5ea
Validity: [From: Mon May 18 08:00:00 HKT 1998,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
SerialNumber: [ 7dd9fe07 cfa81eb7 107967fb a78934c6 ]

]
Algorithm: [SHA1withRSA]
Signature:
0000: 51 4D CD BE 5C CB 98 19 9C 15 B2 01 39 78 2E 4D QM..\.......9x.M
0010: 0F 67 70 70 99 C6 10 5A 94 A4 53 4D 54 6D 2B AF .gpp...Z..SMTm+.
0020: 0D 5D 40 8B 64 D3 D7 EE DE 56 61 92 5F A6 C4 1D .]@.d....Va._...
0030: 10 61 36 D3 2C 27 3C E8 29 09 B9 11 64 74 CC B5 .a6.,'<.)...dt..
0040: 73 9F 1C 48 A9 BC 61 01 EE E2 17 A6 0C E3 40 08 s..H..a.......@.
0050: 3B 0E E7 EB 44 73 2A 9A F1 69 92 EF 71 14 C3 39 ;...Ds*..i..q..9
0060: AC 71 A7 91 09 6F E4 71 06 B3 BA 59 57 26 79 00 .q...o.q...YW&y.
0070: F6 F8 0D A2 33 30 28 D4 AA 58 A0 9D 9D 69 91 FD ....30(..X...i..

]
adding as trusted cert: [
[
Version: V3
Subject: EmailAddress=personal-premium@thawte.com, CN=Thawte Personal Premium CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
Signature Algorithm: MD5withRSA, OID = 1.2.840.113549.1.1.4

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@231e1b
Validity: [From: Mon Jan 01 08:00:00 HKT 1996,
To: Fri Jan 01 07:59:59 HKT 2021]
Issuer: EmailAddress=personal-premium@thawte.com, CN=Thawte Personal Premium CA, OU=Certification Services Division, O=Thawte Consulting, L=Cape Town, ST=Western Cape, C=ZA
SerialNumber: [ 0 ]

Certificate Extensions: 1
[1]: ObjectId: 2.5.29.19 Criticality=true
BasicConstraints:[
CA:true
PathLen:2147483647
]

]
Algorithm: [MD5withRSA]
Signature:
0000: 69 36 89 F7 34 2A 33 72 2F 6D 3B D4 22 B2 B8 6F i6..4*3r/m;."..o
0010: 9A C5 36 66 0E 1B 3C A1 B1 75 5A E6 FD 35 D3 F8 ..6f..<..uZ..5..
0020: A8 F2 07 6F 85 67 8E DE 2B B9 E2 17 B0 3A A0 F0 ...o.g..+....:..
0030: 0E A2 00 9A DF F3 14 15 6E BB C8 85 5A 98 80 F9 ........n...Z...
0040: FF BE 74 1D 3D F3 FE 30 25 D1 37 34 67 FA A5 71 ..t.=..0%.74g..q
0050: 79 30 61 29 72 C0 E0 2C 4C FB 56 E4 3A A8 6F E5 y0a)r..,L.V.:.o.
0060: 32 59 52 DB 75 28 50 59 0C F8 0B 19 E4 AC D9 AF 2YR.u(PY........
0070: 96 8D 2F 50 DB 07 C3 EA 1F AB 33 E0 F5 2B 31 89 ../P......3..+1.

]
adding as trusted cert: [
[
Version: V1
Subject: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 2 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@da5eb
Validity: [From: Mon May 18 08:00:00 HKT 1998,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 2 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
SerialNumber: [ b92f60cc 889fa17a 4609b85b 706c8aaf ]

]
Algorithm: [SHA1withRSA]
Signature:
0000: 72 2E F9 7F D1 F1 71 FB C4 9E F6 C5 5E 51 8A 40 r.....q.....^Q.@
0010: 98 B8 68 F8 9B 1C 83 D8 E2 9D BD FF ED A1 E6 66 ..h............f
0020: EA 2F 09 F4 CA D7 EA A5 2B 95 F6 24 60 86 4D 44 ./......+..$`.MD
0030: 2E 83 A5 C4 2D A0 D3 AE 78 69 6F 72 DA 6C AE 08 ....-...xior.l..
0040: F0 63 92 37 E6 BB C4 30 17 AD 77 CC 49 35 AA CF .c.7...0..w.I5..
0050: D8 8F D1 BE B7 18 96 47 73 6A 54 22 34 64 2D B6 .......GsjT"4d-.
0060: 16 9B 59 5B B4 51 59 3A B3 0B 14 F4 12 DF 67 A0 ..Y[.QY:......g.
0070: F4 AD 32 64 5E B1 46 72 27 8C 12 7B C5 44 B4 AE ..2d^.Fr'....D..

]
adding as trusted cert: [
[
Version: V1
Subject: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 1 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5

Key: com.sun.net.ssl.internal.ssl.JSA_RSAPublicKey@81d2e
Validity: [From: Mon May 18 08:00:00 HKT 1998,
To: Wed Aug 02 07:59:59 HKT 2028]
Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 1 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US
SerialNumber: [ 4cc7eaaa 983e71d3 9310f83d 3a899192 ]

]
Algorithm: [SHA1withRSA]
Signature:
0000: A9 4F C3 0D C7 67 BE 2C CB D9 A8 CD 2D 75 E7 7E .O...g.,....-u..
0010: 15 9E 3B 72 EB 7E EB 5C 2D 09 87 D6 6B 6D 60 7C ..;r...\-...km`.
0020: E5 AE C5 90 23 0C 5C 4A D0 AF B1 5D F3 C7 B6 0A ....#.\J...]....
0030: DB E0 15 93 0D DD 03 BC C7 76 8A B5 DD 4F C3 9B .........v...O..
0040: 13 75 B8 01 C0 E6 C9 5B 6B A5 B8 89 DC AC A4 DD .u.....[k.......
0050: 72 ED 4E A1 F7 4F BC 06 D3 EA C8 64 74 7B C2 95 r.N..O.....dt...
0060: 41 9C 65 73 58 F1 90 9A 3C 6A B1 98 C9 C4 87 BC A.esX...<j......
0070: CF 45 6D 45 E2 6E 22 3F FE BC 0F 31 5C E8 F2 D9 .EmE.n"?...1\...

]
init context
trigger seeding of SecureRandom
done seeding SecureRandom
%% No cached client session
*** ClientHello, v3.1
RandomCookie: GMT: 1098788824 bytes = { 195, 90, 137, 3, 145, 143, 182, 188, 25, 100, 23, 156, 2, 216, 203, 221, 128, 71, 96, 103, 104, 83, 8, 206, 102, 178, 223, 231 }
Session ID: {}
Cipher Suites: { 0, 1 }
Compression Methods: { 0 }
***
[write] MD5 and SHA1 hashes: len = 45
0000: 01 00 00 29 03 01 41 7E 30 D8 C3 5A 89 03 91 8F ...)..A.0..Z....
0010: B6 BC 19 64 17 9C 02 D8 CB DD 80 47 60 67 68 53 ...d.......G`ghS
0020: 08 CE 66 B2 DF E7 00 00 02 00 01 01 00 ..f..........
Thread-0, WRITE: SSL v3.1 Handshake, length = 45
[write] MD5 and SHA1 hashes: len = 44
0000: 01 03 01 00 03 00 00 00 20 00 00 01 41 7E 30 D8 ........ ...A.0.
0010: C3 5A 89 03 91 8F B6 BC 19 64 17 9C 02 D8 CB DD .Z.......d......
0020: 80 47 60 67 68 53 08 CE 66 B2 DF E7 .G`ghS..f...
Thread-0, WRITE: SSL v2, contentType = 22, translated length = 16343
%% No cached client session
*** ClientHello, v3.1
RandomCookie: GMT: 1098788824 bytes = { 35, 33, 62, 166, 239, 169, 184, 133, 11, 228, 67, 237, 169, 94, 55, 118, 202, 82, 58, 43, 130, 14, 14, 196, 229, 173, 85, 236 }
Session ID: {}
Cipher Suites: { 0, 1 }
Compression Methods: { 0 }
***
[write] MD5 and SHA1 hashes: len = 45
0000: 01 00 00 29 03 01 41 7E 30 D8 23 21 3E A6 EF A9 ...)..A.0.#!>...
0010: B8 85 0B E4 43 ED A9 5E 37 76 CA 52 3A 2B 82 0E ....C..^7v.R:+..
0020: 0E C4 E5 AD 55 EC 00 00 02 00 01 01 00 ....U........
Thread-0, WRITE: SSL v3.1 Handshake, length = 45
[write] MD5 and SHA1 hashes: len = 44
0000: 01 03 01 00 03 00 00 00 20 00 00 01 41 7E 30 D8 ........ ...A.0.
0010: 23 21 3E A6 EF A9 B8 85 0B E4 43 ED A9 5E 37 76 #!>.......C..^7v
0020: CA 52 3A 2B 82 0E 0E C4 E5 AD 55 EC .R:+......U.
Thread-0, WRITE: SSL v2, contentType = 22, translated length = 16343
JMS Exception: javax.jms.JMSException: MQJMS2005: failed to create MQQueueManager for '130.18.52.25:DQMCIBMHK003'
Linked exception: com.ibm.mq.MQException: MQJE001: Completion Code 2, Reason 2397
Back to top
View user's profile Send private message
Display posts from previous:   
Post new topic  Reply to topic Page 1 of 1

MQSeries.net Forum Index » IBM MQ Java / JMS » JMS and SSL Problem (SunX509 not available)
Jump to:  



You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Protected by Anti-Spam ACP
 
 


Theme by Dustin Baccetti
Powered by phpBB © 2001, 2002 phpBB Group

Copyright © MQSeries.net. All rights reserved.