activemq-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From yuanbatou <>
Subject Re: setting up c++ client app using CMS using SSL client certificate auth
Date Sat, 07 Sep 2013 12:00:17 GMT
Thank you very much for your reply.

I exported a certificate from broker's keystore and converted it to pem
format using the following command:

    $ keytool -importkeystore -srckeystore broker.ks -destkeystore
broker_cert.p12 -srcstoretype jks -deststoretype pkcs12
    $ openssl pkcs12 -in broker_cert.p12 -out client_ts.pem

and used client_ts.pem on the client side as trust store, the code is
something like:

    decaf::lang::System::setProperty( "",
"client_ts.pem" ); 

but when I tried to connect to broker, I received this error from the client

    Error: Error occurred while accessing an OpenSSL library method:
    error:14077438:SSL routines:SSL23_GET_SERVER_HELLO:tlsv1 alert internal

The following message showed in the activeMQ broker's log:

    2013-09-07 04:43:43,080 | ERROR | Could not accept connection from
tcp:// Connection has been
BrokerService[test_all_interface] Task-3

Does this mean that my pem file is still wrong?

View this message in context:
Sent from the ActiveMQ - User mailing list archive at

View raw message