hyperledger / hyperledger/fabric-chaincode-java

Incorrect parsing of SSL certificates and keys in ChaincodeBase in external launcher case

オープン
#220 コメント 6 件 リアクション 0 件 担当者 0 名 GitHub で見る
help wanted
主要言語
Java
スター
323
フォーク
210
平均マージ
8時間 1分
マージ済み PR(30日)
8

説明

ChaincodeBase attempts to parse SSL certificates and keys provided by an external launcher in the following manner:

```
final SslContext createSSLContext() throws IOException {
final byte[] ckb = Files.readAllBytes(Paths.get(this.tlsClientKeyPath));
final byte[] ccb = Files.readAllBytes(Paths.get(this.tlsClientCertPath));

return GrpcSslContexts.forClient().trustManager(new File(this.tlsClientRootCertPath))
.keyManager(new ByteArrayInputStream(Base64.getDecoder().decode(ccb)),
new ByteArrayInputStream(Base64.getDecoder().decode(ckb)))
.build();
}
```

This fails, because the certs deployed by the external builder are in PEM format, but the code attempts to Base64 decode them.

The fix is obvious, and I have used it successfully in testing (however, I would have to jump through a bunch of hoops to contribute it, so someone else should probably do it).

コントリビューションガイド

コントリビューションガイドを開く

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。