从.net客户端访问ssl服务器(Web服务)

时间:2012-12-20 11:34:04

标签: c# web-services ssl keystore truststore

我尝试从.net客户端(c#)访问ssl服务器(Web服务)。我可以访问可以连接到服务器的java客户端代码。源代码中包含3个文件(saPubKey.jks,WebServices.pfx和trustStore),我认为在java示例中只使用了3个中的2个。

private void setSSLConnection(WSBindingProvider bp){
    KeyStore ks = KeyStore.getInstance("pkcs12");
    ks.load(this.getClass().getClassLoader().getResourceAsStream("WebServices.pfx"), "password".toCharArray());

    KeyManagerFactory kmf = KeyManagerFactory.getInstance("SunX509");
    kmf.init(ks, "password".toCharArray());

    SSLContext sslContext = SSLContext.getInstance("TLS");
    KeyStore ts = KeyStore.getInstance("JKS");
    ts.load(this.getClass().getClassLoader().getResourceAsStream("trustStore"), "pass".toCharArray());

    TrustManagerFactory tmf = TrustManagerFactory.getInstance("SunX509");
    tmf.init(ts);
    sslContext.init(kmf.getKeyManagers(), tmf.getTrustManagers(), null);

    bp.getRequestContext().put(JAXWSProperties.SSL_SOCKET_FACTORY, sslContext.getSocketFactory());

}

我对c#客户端的代码就是这个

var clientCertificate = new X509Certificate2(@"C:\WebServices.pfx", "password");
HttpWebRequest req = (HttpWebRequest)WebRequest.Create("https://blablabla.org:700/fws/ftrs");
req.ClientCertificates.Add(clientCertificate);
req.Headers.Add("SOAPAction", "\"https://blablabla.org:700/fws/ftrs/Rgdvice\"");
req.ContentType = "text/xml;charset=\"utf-8\"";
req.Accept = "text/xml";
req.Method = "POST";
using (Stream stm = req.GetRequestStream())
{
   using (StreamWriter stmw = new StreamWriter(stm))
   {
      stmw.Write(soap);
   }
}
WebResponse response = req.GetResponse(); //(500) Internal Server Error.
Stream responseStream = response.GetResponseStream();

方法req.GetResponse()抛出“(500)内部服务器错误。” 在没有添加客户端证书的情况下,我得到:“发送时发生了意外错误。” 我也试过这行代码而没有运气:

ServicePointManager.ServerCertificateValidationCallback = ((sender, certificate, chain, sslPolicyErrors) => true);

我是ssl和证书的新手,并且真的需要帮助从c#访问ssl服务器。

1 个答案:

答案 0 :(得分:0)

这可能不相关但请确保Web服务不在app_code文件夹中。

相关问题