1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85
|
/**
* Orthanc - A Lightweight, RESTful DICOM Store
* Copyright (C) 2012-2016 Sebastien Jodogne, Medical Physics
* Department, University Hospital of Liege, Belgium
* Copyright (C) 2017-2018 Osimis S.A., Belgium
*
* This program is free software: you can redistribute it and/or
* modify it under the terms of the GNU General Public License as
* published by the Free Software Foundation, either version 3 of the
* License, or (at your option) any later version.
*
* This program is distributed in the hope that it will be useful, but
* WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* General Public License for more details.
*
* You should have received a copy of the GNU General Public License
* along with this program. If not, see <http://www.gnu.org/licenses/>.
**/
package com.orthancserver;
import java.net.*;
import javax.net.ssl.*;
import java.security.*;
import java.security.cert.*;
public class HttpsTrustModifier
{
private static final AlwaysTrustHostname trustHostname_ = new AlwaysTrustHostname();
private static SSLSocketFactory trustSocket_;
private static synchronized SSLSocketFactory GetAlwaysTrustSocket(HttpsURLConnection httpsConnection)
throws NoSuchAlgorithmException, KeyStoreException, KeyManagementException
{
// Singleton pattern to create one single trust manager
if (trustSocket_ == null)
{
SSLContext ctx = SSLContext.getInstance("TLS");
ctx.init(null, new TrustManager[] { new AlwaysTrustManager() }, null);
trustSocket_ = ctx.getSocketFactory();
}
return trustSocket_;
}
private static final class AlwaysTrustHostname implements HostnameVerifier
{
public boolean verify(String hostname, SSLSession session)
{
return true;
}
}
private static class AlwaysTrustManager implements X509TrustManager
{
public void checkClientTrusted(X509Certificate[] arg0, String arg1) throws CertificateException
{
}
public void checkServerTrusted(X509Certificate[] arg0, String arg1) throws CertificateException
{
}
public X509Certificate[] getAcceptedIssuers()
{
return null;
}
}
public static void Trust(URLConnection conn)
throws KeyManagementException, NoSuchAlgorithmException, KeyStoreException
{
if (conn instanceof HttpsURLConnection)
{
HttpsURLConnection httpsConnection = (HttpsURLConnection) conn;
httpsConnection.setSSLSocketFactory(GetAlwaysTrustSocket(httpsConnection));
httpsConnection.setHostnameVerifier(trustHostname_);
}
}
}
|