为了禁用 SSLv3,我们在 server.xml 中进行了必要的更改,但是在 Internet 选项中选择 TLS1.0、TLS1.1 和 TLS1.2 后应用程序页面无法打开-->高级。PFB 进行更改的 Server.xml 部分:
Connector URIEncoding="UTF-8" acceptCount="250"
connectionTimeout="90000" disableUploadTimeout="true" enableLookups="false" maxHttpHeaderSize="8192" maxKeepAliveRequests="-1" maxThreads="500" minSpareThreads="50" port="443"
protocol="org.apache.coyote.http11.Http11NioProtocol"
SSLEnabled="true"
keystoreFile="C:\Program Files\Java\jre6\bin\abc.keystore"
keystorePass="abc"
scheme="https"
secure="true"
clientAuth="false"
sslProtocol="TLSv1,TLSv1.1,TLSv1.2" />
Earlier value of in the above mentioned Server.xml was sslProtocol="TLSv1"