tomcat8.0 配置https
复制阿里云ssl证书相关文件,在tomcat的conf目前下,新建cert文件夹,并将证书和密码放入文件夹,如下图所示:
修改server.xml 添加如下代码:
<Connector
port="443"
protocol="HTTP/1.1"
SSLEnabled="true"
scheme="https"
secure="true"
keystoreFile="C:/Users/Administrator/Desktop/apache-tomcat-8.5.24/conf/cert/1529594172891.pfx"
keystoreType="PKCS12"
keystorePass="1529594172891"
clientAuth="false"
SSLProtocol="TLSv1+TLSv1.1+TLSv1.2"
ciphers="TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256"
SSLCipherSuite="ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4"/>
<!-- Define an AJP 1.3 Connector on port 8009 -->
<Connector port="8009" protocol="AJP/1.3" redirectPort="443" />