Hi Alex,


thanks, this is exactly what I am looking for.



I have just two comments:



* it looks like there was reintroduced issue with keystore which was
already fixed in 7.1.x branch. If there are two certificates in keystore,
it does not matter what is set in "Certificate alias" and first certificate
from keystore is always used.



* if no parameter of keystore/truststore is changed, keystore is not
reloaded. To add client certificate you have to change truststore filename
as well, because otherwise truststore is not reloaded. Could it be possible
to reload related keystore and truststore(s) during "updateTLS" operation
everytime?



Jira QPID-8306 is still in open state, should I raise JIRA for these two
comments or it can be implemented in QPID-8306.



Qpid Broker-J version - master - last commit
bf75f490170beb91f72547c00c365bf024cbaa1f



Regards,
Tomas

Reply via email to