Thank you guys again. Now I can safely start an https server (wow I am happy; btw -Dcxf. config.file did the trick).
Now I have problems with the client: [Exception] unable to find valid certification path to requested target. Please tell me if I have understood these points correctly: 1) I have a server which has two keystores: a) trustManagers (inside cxf.xml) is a keystore (.jks) which contains the CA cert b) keyManagers is a keystore which contains server's publick/private key and clients' certs (but about this, I am not totally sure); 2) I have a client which has two keystores (see above); BTW I wish to understand the protocol itself: 3) client C wants to connect to server S; server S sends its cert to client C; C uses this cert to encrypt messages. Is it correct? How can I specify which cipher suites the client should use? Please help me understand this. Thanks in advance ______________________________________________ Voce Senza Limiti: chiama in tutta Italia a 0 cent. SOLO 9,90 EURO AL MESE fino al 27/03/08! http://abbonati.tiscali.it/promo/vocesenzalimiti_2603/
