国产探花免费观看_亚洲丰满少妇自慰呻吟_97日韩有码在线_资源在线日韩欧美_一区二区精品毛片,辰东完美世界有声小说,欢乐颂第一季,yy玄幻小说排行榜完本

首頁 > 系統(tǒng) > Android > 正文

Android項目中使用HTTPS配置的步驟詳解

2019-10-22 18:33:32
字體:
供稿:網(wǎng)友

前言

如果你的項目的網(wǎng)絡(luò)框架是okhttp,那么使用https還是挺簡單的,因為okhttp默認(rèn)支持HTTPS。傳送門

下面話不多說了,來一起看看詳細(xì)的介紹:

Android 使用 HTTPS 配置的步驟。

1、step

配置hostnameVerifier

 new HostnameVerifier() {   @Override    public boolean verify(String hostname, SSLSession session) {     return true;    } };

2.step

配置 sslSocketFactory

public static SSLSocketFactory getSslSocketFactory(InputStream[] certificates, InputStream bksFile, String password){  try{   TrustManager[] trustManagers = prepareTrustManager(certificates);   KeyManager[] keyManagers = prepareKeyManager(bksFile, password);   SSLContext sslContext = SSLContext.getInstance("TLS");   TrustManager trustManager = null;   if (trustManagers != null){    trustManager = new MyTrustManager(chooseTrustManager(trustManagers));   } else{    trustManager = new UnSafeTrustManager();   }   sslContext.init(keyManagers, new TrustManager[]{trustManager}, new SecureRandom());   return sslContext.getSocketFactory();  } catch (NoSuchAlgorithmException e){   throw new AssertionError(e);  } catch (KeyManagementException e){   throw new AssertionError(e);  } catch (KeyStoreException e){   throw new AssertionError(e);  } } private class UnSafeHostnameVerifier implements HostnameVerifier{  @Override  public boolean verify(String hostname, SSLSession session){   return true;  } } private static class UnSafeTrustManager implements X509TrustManager{  @Override  public void checkClientTrusted(X509Certificate[] chain, String authType)throws CertificateException{}  @Override  public void checkServerTrusted(X509Certificate[] chain, String authType)throws CertificateException{}  @Override  public X509Certificate[] getAcceptedIssuers(){   return new X509Certificate[]{};  } } private static TrustManager[] prepareTrustManager(InputStream... certificates){  if (certificates == null || certificates.length <= 0) return null;  try{   CertificateFactory certificateFactory = CertificateFactory.getInstance("X.509");   KeyStore keyStore = KeyStore.getInstance(KeyStore.getDefaultType());   keyStore.load(null);   int index = 0;   for (InputStream certificate : certificates){    String certificateAlias = Integer.toString(index++);    keyStore.setCertificateEntry(certificateAlias, certificateFactory.generateCertificate(certificate));    try{     if (certificate != null)      certificate.close();    } catch (IOException e){    }   }   TrustManagerFactory trustManagerFactory = null;   trustManagerFactory = TrustManagerFactory.getInstance(TrustManagerFactory.getDefaultAlgorithm());   trustManagerFactory.init(keyStore);   TrustManager[] trustManagers = trustManagerFactory.getTrustManagers();   return trustManagers;  } catch (NoSuchAlgorithmException e){   e.printStackTrace();  } catch (CertificateException e){   e.printStackTrace();  } catch (KeyStoreException e){   e.printStackTrace();  } catch (Exception e){   e.printStackTrace();  }  return null; } private static KeyManager[] prepareKeyManager(InputStream bksFile, String password){  try{   if (bksFile == null || password == null) return null;   KeyStore clientKeyStore = KeyStore.getInstance("BKS");   clientKeyStore.load(bksFile, password.toCharArray());   KeyManagerFactory keyManagerFactory = KeyManagerFactory.getInstance(KeyManagerFactory.getDefaultAlgorithm());   keyManagerFactory.init(clientKeyStore, password.toCharArray());   return keyManagerFactory.getKeyManagers();  } catch (KeyStoreException e){   e.printStackTrace();  } catch (NoSuchAlgorithmException e){   e.printStackTrace();  } catch (UnrecoverableKeyException e){   e.printStackTrace();  } catch (CertificateException e){   e.printStackTrace();  } catch (IOException e){   e.printStackTrace();  } catch (Exception e){   e.printStackTrace();  }  return null; } private static X509TrustManager chooseTrustManager(TrustManager[] trustManagers){  for (TrustManager trustManager : trustManagers){   if (trustManager instanceof X509TrustManager){    return (X509TrustManager) trustManager;   }  }  return null; } private static class MyTrustManager implements X509TrustManager{  private X509TrustManager defaultTrustManager;  private X509TrustManager localTrustManager;  public MyTrustManager(X509TrustManager localTrustManager) throws NoSuchAlgorithmException, KeyStoreException{   TrustManagerFactory var4 = TrustManagerFactory.getInstance(TrustManagerFactory.getDefaultAlgorithm());   var4.init((KeyStore) null);   defaultTrustManager = chooseTrustManager(var4.getTrustManagers());   this.localTrustManager = localTrustManager;  }  @Override  public void checkClientTrusted(X509Certificate[] chain, String authType) throws CertificateException{}  @Override  public void checkServerTrusted(X509Certificate[] chain, String authType) throws CertificateException{   try{    defaultTrustManager.checkServerTrusted(chain, authType);   } catch (CertificateException ce){    localTrustManager.checkServerTrusted(chain, authType);   }  }  @Override  public X509Certificate[] getAcceptedIssuers(){   return new X509Certificate[0];  } }

調(diào)用 getSslSocketFactory(null,null,null) 即可。

3.step

設(shè)置OkhttpClient。

android,使用https,https請求,android使用https請求

方法 getSslSocketFactory(null,null,null) 的第一個參數(shù) 本來要傳入自簽名證書的,當(dāng)傳入null 即可忽略自簽名證書。

如果你想嘗試不忽略自簽名證書 你可以調(diào)用下面的方法獲取 SSLSocketFactory。并設(shè)置到OkhttpClient中。

 public static SSLSocketFactory getSSlFactory(Context context) {  try {   CertificateFactory cf = CertificateFactory.getInstance("X.509");   InputStream caInput = new BufferedInputStream(context.getAssets().open("client.cer"));//把證書打包在asset文件夾中   Certificate ca;   try {    ca = cf.generateCertificate(caInput);    LogUtil.d("Longer", "ca=" + ((X509Certificate) ca).getSubjectDN());    LogUtil.d("Longer", "key=" + ((X509Certificate) ca).getPublicKey());   } finally {    caInput.close();   }   // Create a KeyStore containing our trusted CAs   String keyStoreType = KeyStore.getDefaultType();   KeyStore keyStore = KeyStore.getInstance(keyStoreType);   keyStore.load(null, null);   keyStore.setCertificateEntry("ca", ca);   // Create a TrustManager that trusts the CAs in our KeyStore   String tmfAlgorithm = TrustManagerFactory.getDefaultAlgorithm();   TrustManagerFactory tmf = TrustManagerFactory.getInstance(tmfAlgorithm);   tmf.init(keyStore);   // Create an SSLContext that uses our TrustManager   SSLContext s = SSLContext.getInstance("TLSv1", "AndroidOpenSSL");   s.init(null, tmf.getTrustManagers(), null);   return s.getSocketFactory();  } catch (CertificateException e) {   e.printStackTrace();  } catch (IOException e) {   e.printStackTrace();  } catch (NoSuchAlgorithmException e) {   e.printStackTrace();  } catch (KeyStoreException e) {   e.printStackTrace();  } catch (KeyManagementException e) {   e.printStackTrace();  } catch (NoSuchProviderException e) {   e.printStackTrace();  }  return null; }

通過上面的幾步配置即可使用https的自簽名證書 和 單向驗證的Https了。

Glide 訪問Https的圖片

1.step

在build.gradle 引入下面的aar

/提供的Module/compile 'com.github.bumptech.glide:okhttp3-integration:1.4.0@aar'

2.step

 OkHttpClient okhttpClient = new OkHttpClient.Builder()    .connectTimeout(30, TimeUnit.SECONDS)    .retryOnConnectionFailure(true) //設(shè)置出現(xiàn)錯誤進行重新連接。    .connectTimeout(15, TimeUnit.SECONDS)    .readTimeout(60 * 1000, TimeUnit.MILLISECONDS)    .sslSocketFactory(HttpsUtils.getSslSocketFactory(null,null,null))    .hostnameVerifier(new HostnameVerifier() {     @Override     public boolean verify(String hostname, SSLSession session) {      return true;     }    })     .build();  //讓Glide能用HTTPS  Glide.get(this).register(GlideUrl.class, InputStream.class, new OkHttpUrlLoader.Factory(okhttpClient));

設(shè)置已經(jīng)驗證證書的的OkhttpClient 到Glide 既可。

總結(jié)

以上就是這篇文章的全部內(nèi)容了,希望本文的內(nèi)容對大家的學(xué)習(xí)或者工作能帶來一定的幫助,如果有疑問大家可以留言交流,謝謝大家對VEVB武林網(wǎng)的支持。


注:相關(guān)教程知識閱讀請移步到Android開發(fā)頻道。
發(fā)表評論 共有條評論
用戶名: 密碼:
驗證碼: 匿名發(fā)表
主站蜘蛛池模板: 长沙县| 清新县| 渭南市| 雷山县| 政和县| 岳西县| 西吉县| 蓬安县| 安岳县| 右玉县| 多伦县| 济阳县| 贵阳市| 札达县| 海南省| 泰来县| 琼海市| 新巴尔虎右旗| 福泉市| 宁都县| 高雄市| 会宁县| 金沙县| 惠水县| 饶河县| 普兰县| 正宁县| 微博| 宿州市| 黎平县| 郁南县| 天镇县| 监利县| 南召县| 扎囊县| 平利县| 平远县| 都匀市| 九寨沟县| 高雄县| 淳化县|