te')); return $arr; } /* 遍历用户所有主题 * @param $uid 用户ID * @param int $page 页数 * @param int $pagesize 每页记录条数 * @param bool $desc 排序方式 TRUE降序 FALSE升序 * @param string $key 返回的数组用那一列的值作为 key * @param array $col 查询哪些列 */ function thread_tid_find_by_uid($uid, $page = 1, $pagesize = 1000, $desc = TRUE, $key = 'tid', $col = array()) { if (empty($uid)) return array(); $orderby = TRUE == $desc ? -1 : 1; $arr = thread_tid__find($cond = array('uid' => $uid), array('tid' => $orderby), $page, $pagesize, $key, $col); return $arr; } // 遍历栏目下tid 支持数组 $fid = array(1,2,3) function thread_tid_find_by_fid($fid, $page = 1, $pagesize = 1000, $desc = TRUE) { if (empty($fid)) return array(); $orderby = TRUE == $desc ? -1 : 1; $arr = thread_tid__find($cond = array('fid' => $fid), array('tid' => $orderby), $page, $pagesize, 'tid', array('tid', 'verify_date')); return $arr; } function thread_tid_delete($tid) { if (empty($tid)) return FALSE; $r = thread_tid__delete(array('tid' => $tid)); return $r; } function thread_tid_count() { $n = thread_tid__count(); return $n; } // 统计用户主题数 大数量下严谨使用非主键统计 function thread_uid_count($uid) { $n = thread_tid__count(array('uid' => $uid)); return $n; } // 统计栏目主题数 大数量下严谨使用非主键统计 function thread_fid_count($fid) { $n = thread_tid__count(array('fid' => $fid)); return $n; } ?>java - Configure grails spring-security-ldap plugin to use STARTTLS - Stack Overflow
最新消息:雨落星辰是一个专注网站SEO优化、网站SEO诊断、搜索引擎研究、网络营销推广、网站策划运营及站长类的自媒体原创博客

java - Configure grails spring-security-ldap plugin to use STARTTLS - Stack Overflow

programmeradmin3浏览0评论

Is it possible to configure the Grails spring-security-ldap plugin to use STARTTLS?

Grails version 4

spring-security-core:4.0.3

spring-security-ldap:4.0.0.M1

I have tried to configure this in a CustomLdapContextInitializer.groovy in src/main/groovy and the bean added in resources.groovy:

package RIMS
import .springframework.ldap.core.support.LdapContextSource

import javax.naming.ldap.InitialLdapContext
import javax.naming.ldap.LdapContext
import javax.naming.ldap.StartTlsRequest
import javax.naming.ldap.StartTlsResponse
import javax.ssl.SSLSession

class CustomLdapContextInitializer {
LdapContextSource ldapContextSource

String managerDn
String managerPassword
String server
SSLSession session

void setManagerDn(managerDn){
    this.managerDn = managerDn
}
void setManagerPassword(managerPassword){
    this.managerPassword = managerPassword
}
void setServer(server){
    this.server = server
}

CustomLdapContextInitializer(LdapContextSource ldapContextSource) {
    this.ldapContextSource = ldapContextSource

    this.setManagerDn(ldapContextSource.userDn)
    this.setManagerPassword(ldapContextSource.password)
    this.initializeContext()
}

void initializeContext() {

    LdapContext ctx = (InitialLdapContext) ldapContextSource.getContext(this.managerDn, this.managerPassword)
    StartTlsResponse tls = (StartTlsResponse) ctx.extendedOperation(new StartTlsRequest())
    session = tls.negotiate()
}
}

But I get an error when the app starts:

2025-02-17 12:26:17.519  WARN --- [  restartedMain] ConfigServletWebServerApplicationContext : Exception encountered during context initialization - cancelling refresh attempt: .springframework.beans.factory.BeanCreationException: Error creating bean with name 'customLdapContextInitializer': Bean instantiation via constructor failed; nested exception is .springframework.beans.BeanInstantiationException: Failed to instantiate [RIMS.CustomLdapContextInitializer]: Constructor threw exception; nested exception is javax.ssl.SSLHandshakeException: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuilderException: unable to find valid certification path to requested target

The certificate has been added into the java keystore and is not a self signed certificate.

发布评论

评论列表(0)

  1. 暂无评论