Related Pages
#Server Side Key store - Root Certification - Server Certification #Client Side Trust Store - Root Certification
https://stackoverflow.com/questions/29005649/java-how-setup-an-ssl-one-way-authentification-for-a-server-client-over-a-lan
https://www.ossmentor.com/2015/03/one-way-and-two-way-ssl-and-tls.html
Client authentication does not want to see the site from other than specific clients
#Server Side Trust Store - Root Certification #Client Side Key store - Root Certification - Server Certification
https://www.ossmentor.com/2015/03/one-way-and-two-way-ssl-and-tls.html
${JAVA_HOME}/bin/keytool keytool -genkey -alias server_cer -keyalg RSA -keysize 512 -keypass changeit -validity 365 -storetype JKS -keystore server_keystore -storepass changeit -v
keytool -certreq -alias server_cer -file server.csr -keypass changeit -storetype JKS -keystore server_keystore -storepass changeit
client.cer
keytool -import -alias test_root_ca -file test_root_ca.cer -keypass changeit -trustcacerts -storetype JKS -keystore server_keystore -storepass changeit
keytool -import -alias server_cer -file server.cer -keypass changeit -trustcacerts -storetype JKS -keystore server_keystore -storepass changeit -v
Import root certificate to server side
keytool -import -alias test_root_ca -file test_root_ca.cer -keystore client_cacerts -storetype JKS -keypass changeit -storepass changeit
Import root certificate to server side
keytool -import -alias test_root_ca -file test_root_ca.cer -keystore server_cacerts -storetype JKS -keypass changeit -storepass changeit
keytool -genkey -alias client_cer -keyalg RSA -keysize 512 -keypass changeit -validity 365 -storetype JKS -keystore client_keystore -storepass changeit -v
keytool -certreq -alias client_cer -file client.csr -keypass changeit -storetype JKS -keystore client_keystore -storepass changeit
client.cer
keytool -import -alias test_root_ca -file test_root_ca.cer -keypass changeit -trustcacerts -storetype JKS -keystore client_keystore -storepass changeit
keytool -import -alias client_cer -file client.cer -keypass changeit -trustcacerts -storetype JKS -keystore client_keystore -storepass changeit -v
keytool -list -v -keystore KeyStore -storepass Pass
keytool -delete -alias tomcatkey -keystore keystore -storepass password