Java tutorial
/** * Copyright (c) 2010-2019 Contributors to the openHAB project * * See the NOTICE file(s) distributed with this work for additional * information. * * This program and the accompanying materials are made available under the * terms of the Eclipse Public License 2.0 which is available at * http://www.eclipse.org/legal/epl-2.0 * * SPDX-License-Identifier: EPL-2.0 */ package org.openhab.binding.netatmo.internal.handler; import java.security.GeneralSecurityException; import java.security.SecureRandom; import java.security.cert.X509Certificate; import javax.net.ssl.SSLContext; import javax.net.ssl.TrustManager; import javax.net.ssl.X509TrustManager; import org.slf4j.Logger; import org.slf4j.LoggerFactory; import com.squareup.okhttp.OkHttpClient; /** * {@link TrustingOkHttpClient} is a OkHttpClient subclass * that does clears positively every certificate request * * @author Gal L'hopital - Initial contribution * */ public class TrustingOkHttpClient extends OkHttpClient { private final Logger logger = LoggerFactory.getLogger(TrustingOkHttpClient.class); private final TrustManager[] certs = new TrustManager[] { new X509TrustManager() { @Override public X509Certificate[] getAcceptedIssuers() { return null; } @Override public void checkServerTrusted(final X509Certificate[] chain, final String authType) { } @Override public void checkClientTrusted(final X509Certificate[] chain, final String authType) { } } }; public TrustingOkHttpClient() { try { SSLContext ctx = SSLContext.getInstance("SSL"); ctx.init(null, certs, new SecureRandom()); this.setHostnameVerifier((hostname, session) -> true); this.setSslSocketFactory(ctx.getSocketFactory()); } catch (GeneralSecurityException ex) { logger.trace("Ignoring security exception: ", ex); } } }