ssl authenticate does not work
Brought to you by:
ickzon
Hi Experts
using latest jtds, i am able to connect to a mssql server configured with 'force encryption'=true , BUT i did not configure/setup a certificate on the sql server machine.
i manage to connect although i am passing ssl=authenticate to the connection.
i am also passing -Djsse.enableCBCProtection=false to the jvm as suggested in previous posts.
please note that the query:
"SELECT encrypt_option FROM sys.dm_exec_connections WHERE session_id = @@SPID" returns true meaning that the data is indeed encrypted...
how is this possible??? does the Beast flag cause security breach of some sort?
please assist
thanks
clahav
Would this issue help you ? https://sourceforge.net/p/jtds/bugs/725/