在android2.1如何实现对ssl的无证书访问

来源:互联网 发布:五毒萝莉捏脸数据截图 编辑:程序博客网 时间:2024/05/16 05:05
public String connentUrl(String strUrl) {
  StringBuffer sbResult = null;

try {
  HttpURLConnection http = null;
  URL url = new URL(strUrl);

  // 判断是http请求还是https请求
  if (url.getProtocol().toLowerCase().equals("https")) {
     trustAllHosts();
     HttpsURLConnection https = (HttpsURLConnection) url.openConnection();
     https.setHostnameVerifier(DO_NOT_VERIFY);
     http = https;
  } else {
      http = (HttpURLConnection) url.openConnection();
  }                                               
                
  http.setDoInput(true);
  // 设置超时时间
  http.setConnectTimeout(10000);
  // 设置请求类型为post
  http.setRequestMethod("POST");
// 设置接收类型
  http.setRequestProperty("accept", "*/*");
                        
  int resCode = http.getResponseCode();
  http.connect();


  // response返回的数字是200代表请求成功
  if (resCode == 200) {
      InputStream input = http.getInputStream();
      BufferedReader data = new BufferedReader(new InputStreamReader(
                                                input, HTTP.UTF_8));
     String strLine = "";

     // 从返回结果中取值
     while ((strLine = data.readLine()) != null) {
                if (null == sbResult) {
             sbResult = new StringBuffer();
        }

         sbResult.append(strLine);
  }

   input.close();
   http.disconnect();
} catch (Exception ex) {
}
    return sbResult.toString();
}

final static HostnameVerifier DO_NOT_VERIFY = new HostnameVerifier() {
                public boolean verify(String hostname, SSLSession session) {
                        return true;
                }
        };

/**
* 信任所有主机-对于任何证书都不做检查
*/
private static void trustAllHosts() {
     // Create a trust manager that does not validate certificate chains
     // Android 采用X509的证书信息机制
    TrustManager[] trustAllCerts = new TrustManager[] { new X509TrustManager() {
     public java.security.cert.X509Certificate[] getAcceptedIssuers() {
          return new java.security.cert.X509Certificate[] {};
   }

public void checkClientTrusted(X509Certificate[] chain, String authType) throws CertificateException {}
  public void checkServerTrusted(X509Certificate[] chain,String authType) throws CertificateException {}
}
};

// Install the all-trusting trust manager
try {
  SSLContext sc = SSLContext.getInstance("TLS");
  sc.init(null, trustAllCerts, new java.security.SecureRandom());
  HttpsURLConnection.setDefaultSSLSocketFactory(sc.getSocketFactory());
} catch (Exception e) {
  e.printStackTrace();
}
}
原创粉丝点击