https://bz.apache.org/bugzilla/show_bug.cgi?id=59940

Shaun Morton <sh...@legalfiles.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 OS|                            |All

--- Comment #1 from Shaun Morton <sh...@legalfiles.com> ---
I would expect to see this error message in the tomcat8-stdout.????-??-??.log
with SSL debug is enabled and the client does not present a certificate.  I see
nothing in the log when running 8.5.4:

%% Invalidated:  [Session-2, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]
http-nio-8443-exec-2, SEND TLSv1.2 ALERT:  fatal, description = bad_certificate
http-nio-8443-exec-2, WRITE: TLSv1.2 Alert, length = 2
http-nio-8443-exec-2, called closeSocket()
http-nio-8443-exec-2, handling exception: javax.net.ssl.SSLHandshakeException:
null cert chain
http-nio-8443-exec-2, IOException in getSession(): 
javax.net.ssl.SSLHandshakeException: null cert chain
http-nio-8443-exec-2, called close()
http-nio-8443-exec-2, called closeInternal(true)

and what Chrome would present:
This site can’t provide a secure connection

servername didn’t accept your login certificate, or your login certificate may
have expired.
Try contacting the system admin.
ERR_BAD_SSL_CLIENT_AUTH_CERT

-- 
You are receiving this mail because:
You are the assignee for the bug.
---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org
For additional commands, e-mail: dev-h...@tomcat.apache.org

Reply via email to