Only named ECParameters supported?
I'm having this SSLProtocolException while trying to connect to an OpenSSL server using JDK1.6. The same code is working with JDK 1.5. What does this named ECParameter mean? My OpenSSL server is using NID_sect163r2 curve.
Here is part of my code to generate SSLSocket:
SSLContext sslCtx = SSLContext.getInstance("TLS");
MyTrustManager tm[] = new MyTrustManager[1];
tm[0] = new MyTrustManager();
sslCtx.init(null, tm, null);
SSLSocketFactory sf = sslCtx.getSocketFactory();
SSLSocket socket = (SSLSocket)sf.createSocket(server, port);
And the whole SSL communication message is:
SSLContext class: class javax.net.ssl.SSLContext
Protocol: TLS
Provider: SunJSSE version 1.6
trigger seeding of SecureRandom
done seeding SecureRandom
%% No cached client session
*** ClientHello, TLSv1
RandomCookie: GMT: 1176390882 bytes = { 63, 105, 168, 46, 149, 87, 91, 38, 105, 23, 3, 24, 226, 70, 43, 244, 178, 136, 110, 170, 87, 48, 85, 69, 126, 210, 19, 45 }
Session ID: {}
Cipher Suites: [SSL_RSA_WITH_RC4_128_MD5, SSL_RSA_WITH_RC4_128_SHA, TLS_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_DSS_WITH_AES_128_CBC_SHA, SSL_RSA_WITH_3DES_EDE_CBC_SHA, SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA, SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA, SSL_RSA_WITH_DES_CBC_SHA, SSL_DHE_RSA_WITH_DES_CBC_SHA, SSL_DHE_DSS_WITH_DES_CBC_SHA, SSL_RSA_EXPORT_WITH_RC4_40_MD5, SSL_RSA_EXPORT_WITH_DES40_CBC_SHA, SSL_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA, SSL_DHE_DSS_EXPORT_WITH_DES40_CBC_SHA]
Compression Methods: { 0 }
main, WRITE: TLSv1 Handshake, length = 73
main, WRITE: SSLv2 client hello message, length = 98
main, READ: TLSv1 Handshake, length = 74
*** ServerHello, TLSv1
RandomCookie: GMT: 1176390881 bytes = { 139, 43, 74, 230, 203, 174, 215, 84, 222, 72, 118, 176, 186, 121, 11, 238, 27, 118, 98, 13, 102, 187, 18, 232, 68, 153, 5, 142 }
Session ID: {222, 156, 122, 253, 124, 124, 49, 111, 255, 47, 109, 0, 109, 189, 129, 17, 49, 210, 216, 90, 120, 214, 33, 116, 99, 88, 17, 232, 97, 12, 112, 209}
Cipher Suite: SSL_RSA_WITH_3DES_EDE_CBC_SHA
Compression Method: 0
%% Created: [Session-1, SSL_RSA_WITH_3DES_EDE_CBC_SHA]
** SSL_RSA_WITH_3DES_EDE_CBC_SHA
main, READ: TLSv1 Handshake, length = 805
main, handling exception: javax.net.ssl.SSLProtocolException: java.io.IOException: Only named ECParameters supported
main, SEND TLSv1 ALERT: fatal, description = unexpected_message
main, WRITE: TLSv1 Alert, length = 2
main, called closeSocket()
Thanks in advance,
This looks like Sun's Keystore implementation cannot load a ECDSA key if it was created in some particular way:
import java.io.FileInputStream;
import java.security.KeyStore;
public class KeyLoader {
// For some reason JRE 1.6 cannot recover the key
public static void main(String args[]) throws Exception {
FileInputStream fin = new FileInputStream("mykeystore.jks");
KeyStore ks = KeyStore.getInstance("JKS");
ks.load(fin, "password".toCharArray());
ks.getKey("tcsign", "password".toCharArray());
}Exception in thread "main" java.security.UnrecoverableKeyException: Only named ECParameters supported
at sun.security.provider.KeyProtector.recover(KeyProtector.java:321)
at sun.security.provider.JavaKeyStore.engineGetKey(JavaKeyStore.java:121)
at sun.security.provider.JavaKeyStore$JKS.engineGetKey(JavaKeyStore.java:38)
at java.security.KeyStore.getKey(KeyStore.java:763)
at KeyLoader.main(KeyLoader.java:12)
Similar Messages
-
hi ive upgraded my itouch to ios 6.1.3 but it keeps crashing ounce i put my passcode in is there a way i can fix this? one of my friends mentioed downgrading it but the only way isnt supported by apple so i dont feel safe with it so plzz help me.
it has worked fine no problems till i updated it i tried restoring itwith my old backup but it doesnt move the ios back so it just keeps on craching when i try to unlock itTry:
- Reset the iOS device. Nothing will be lost
Reset iOS device: Hold down the On/Off button and the Home button at the same time for at
least ten seconds, until the Apple logo appears.
- Restore from backup. See:
iOS: How to back up
- Restore to factory settings/new iOS device.
If still problem, make an appointment at the Genius Bar of an Apple store since it appears you have a hardware problem.
Apple Retail Store - Genius Bar
Downgrading the iOS is not supported by Apple -
Row based Target only mode not supported
when i try to execute a mapping i am getting the following error
Row based Target only mode not supported
what can be the reasons for thisHello Michael
Check if you have a procedure (other than pre or post mapping) in your mapping. Every part of a mapping after a procedure can only be generated in row-based mode.
Hope this helps
Mate -
Hello Expert,
Error while send IDOC
" IDOC_ADAPTER.ATTRIBUTE_BE_NOT_SUPP Only asynchronous processing
supported for IDOC Adapter" is returned.
Please suggest
ThulasiHi,
Make sure that you have mentioned the Recever message interface as Async mode
Here it is saying that IDOC suports only Async that means some where else u have mentioned as Sync interface
Regards
Seshagiri -
When I open iMovie, it says that quick time componets are missing, "Please re-install"...When I do that it says that ONLY 9 is supported and I have to have that first. What gives with that?
What version of iPhoto are you using?
This is the the first time I have ever launched it.
Does that mean there are no photos in the library? If so move it to the Trash bin in the Dock and launch iPhoto again.
If there are photos in the library do the following:
Using iPhoto Library Manager to Rebuild Your iPhoto Library
Download iPhoto Library Manager and launch.
Click on the Add Library button,
and select the library you want to add from those in the selection window.
Now that the library is listed in the left hand pane of iPLM, click on your library and go to the Library ➙ Rebuild Library menu option
In the next window name the new library and select the location you want it to be placed.
Click on the Create button.
Note 1: This creates a new library based on the LIbraryData.xml file in the library and will recover Events, Albums, keywords, titles and comments. However, books, calendars, cards and slideshows will be lost.
Note 2: Your current library will be left untouched for further attempts at a fix if so desired.
OT -
Interested only in tech support to resolve the issue previously noted. Not interested in a public forum discussion.
iquniverse,
This is a thread in a public forum.
I believe the right place to try is Customer Care (tick I Still Need Help and hope for an agent available for a chat),
http://helpx.adobe.com/contact.html
or Adobe Support (phone),
http://helpx.adobe.com/adobe-connect/adobe-connect-phone-numbers.html -
Read-only connections not supported
We trying to set the JDBC connection as "read-only" and we are getting the following SQLException when calling Connection.setReadOnly( true ):
setReadOnly: Read-only connections not supported
We are running Oracle 8i (8.1.7.4.0) with JDBC driver version 8.1.7.2.0.
Why this setting is not supported?
Thanks in advance,
- N. ThomassinN. Thomassin,
I wonder if a setting on the server has to change
to "enable" this feature...Sorry, I don't know. I suggest searching the Oracle documentation, the MetaLink Web site and the Ask Tom Web site.
Good Luck,
Avi. -
Why only j2sdkee1.3 support JNDI lookup "java:comp/env" from remote client?
Hi:
I have been puzzled by this function of j2sdkee1.3.1 support JNDI lookup "java:comp/env" from client. I always think that "java:comp/env" namespace can only be access by the application server self for it is a private namespace. The weblogic and websphere doest support this.
Why?
Regards!
John LeeHi:I'm unable to get JNDI reference object from remote application client with "java:comp/env/ejb/<lookupName>".
The exception says:
Application threw an exception:javax.naming.CommunicationException: Cannot connect to ORB [Root exception is org.omg.CORBA.COMM_FAILURE: vmcid: SUN minor code: 201 completed: No]
The J2EE server and client are run on different machines, and needs to be like this. There isn't any problem with JSP/Servlet (cause they run/execute on the server itself). How will the client find out the JNDI refernce my mere specification of "java:comp/env/..."?
Am I making a mistake anywhere?
BEA Weblogic & IBM Websphere allows explicitly specifying the server name, while doing JNDI lookup. Is there anything similary for J2EE?
I couldn't find reference for this anywhere in the J2EE tutorial or EJB books.
- Devashish -
We're running Lync Server 2013, in house, and some of our more fearless users decided it would be a good idea to install the newly released Skype for Business client.
These users were greeted with the following prompt;
You have the newer version of Lync called Skype for Business. However, your admin would like you to use Lync or it's the only version your server supports. Please restart now to use Lync.
I suspect, that our server is causing this. Can anyone point me in the direction of server prerequisites/patches/updates/KBs that might help eradicate this message?
Many thanks in advance,
James VincentHi,
It is controlled by the server (Client policy), when having Feb-2015 Lync CU installed on your Lync frontends, you can control the UI of the client by using Client Policy on the Lync side "Set-csClientPolicy -EnableSkypeUI $False or $True"
nevertheless you need to know that if you block the Skype UI users will get the mentioned Warning Message and the client will reboot into the old Lync UI but still they will have some confusion with some points (refer to this article for more details
http://masteringlync.com/2015/04/04/change-is-coming-what-enableskypeui-doesnt-do/ )
If you want to block the whole update, you can do that by blocking the new updates and patches released two days ago using "SCCM or WSUS" although I think if you haven't done that already it is little late for that.
If you find this helpful
please click "Vote as Helpful" if it answered your question please click "Mark as Answer"
Mostafa Eltohamy
Blog: http://Lyncdude.com Twitter:
LinkedIn:
XING: -
where can i get another driver except the ( JdbcOdbcDriver )
as it doesn`t support named parameters in the CallableStatement
Thankshttp://industry.java.sun.com/products/jdbc/drivers
-
Keywords the only metadata fully supported ??
As far as I can tell from reading the manual, the only type of metadata that is fully supported, in the sense of having handy tools to organise, add and edit the information, is keywords.
In other words there is no way to add, say "Amsterdam" to the IPTC Locatin field of a group of images, or to save the combination "Europe + Holland + Amsterdam" as a "frequently used combination" to add to single or multiple files.
Is that correct? Or have I misunderstood? Does Aperture assume that users will only be adding info via "Keywords"?Metadata>Batch Change... and lift-n-stampt are the two main ways of applying metadata to multiple files.
Metadata presets were just introduced in 1.5 and fit your "frequently used combination". Manually edit the metadata for an image, then click on the 'cog' button (top right of the info panel) and choose "Save as Preset...". That metadata can now be added to (or replace entirely) another image in the future.
But no, there's no equivalent to the Keywords HUD.
Ian -
Envy 15-j030eb only 24gb msata support?
Hi,
I own an envy 15-j030eb, and my question was if it only supports a msata ssd of a maximum capacity of 24gb? If I add a msata SSD of 128gb, Will it work?
thankssIt will work but it cannot be used as a boot drive in conjunction with a normal hard drive. The mSSD is not intended as primary storage or to hold the operating system; it is designed to be an acceleration cache for the main drive.
-
We only get partial support for ODF?
I noticed immediately that my odf documents are recognized in the finder, and will open with text edit, but I cant open them at all in pages.....
Seems like apple only halfway implemented odf support.I too was disappointed to find that iWork '08 does not support ODF, but I'm encouraged to see it in TextEdit. Perhaps we'll see ODF for iWork in an update. If so, I'll give it another look.
-
Is Safari the only web browser supported on the iPad?
Just wondering if Firefox works on the iPad or ONLY Safari?
There is no Firefox for the iPad, but there are other browsers available in the App Store (just search for browser) e.g. Atomic Web, iCab, Mercury, Skyfire
-
I okay broken download have this movie the bible and my bill $24:99 and this can't download and this hd and ad.part hd and sd. Bad this iPad have do not work this download support download.can't download. The end this iPad. Bad iPad. Thank you.
But now I can't find the actual movie...I go to iTunes to purchases and view movies , to downloads and searched the title of the movie...I can see an icon of it and it is in a separate place from other purchases but it says downloaded in faded lettering. Where is it?
If you can't find the movie you downloaded on your iPad, iPhone or iPod Touch, check inside your Videos App
Maybe you are looking for
-
How to set the number of rows displayed in a classical report at runtime?
Hi, Our customer has several standard client hardware configuration and would like to enable end users to choose their 'display profile' at login time. This 'display profile' would contain predefined values for these hardware configurations and suppo
-
I have a 2011 MBP 15'. It has a core i7 2.4GHz 8gb of ram, and a HD 6750m. I rarely use Lion, I use Windows 7 Enterprise. I boot up my laptop and it turns on fine. Windows loads, but as soon as I plug the MagSafe adapter into the laptop, the display
-
I STILL can't open my upgraded itunes!
Hi, I've downloaded the new itunes with the quicktime and now my itunes will not open. I have tried everything: reinstalling it all, installing the standalone quicktime and turning off my Norton stuff. I've tried the msconfig and it worked, but when
-
Volume differs A LOT in itunes, help please!
The volume on a lot of my songs in itunes differs so much there´s almost no point in having them there at all. It really bugs me when i want to use my ipod nano (2nd gen), but it´s been checked twice and there is nothing wrong with it. It must be in
-
Reg enhanced Receiver determination
Hi Guys, if i have to send data to 10 receivers but how many Interface Determinations i have to create could anyone give me about enhanced Receiver determination Thanks