javax.net.ssl.SSLException:Insufficient buffer remaining for AEAD cipher fragment (0).

运行环境:Spring boot 2.1.1.RELEASE 集成tomca运行在liunx系统下报错日志.没有使用Elasticsearch技术,使用了Spring security技术, 但是我没有解决掉,再此发出来希望集中解决

在GitHub上附源码路径,希望有人根据理解留言解决问题(Ctrl+F关键字 Insufficient buffer remaining for AEAD)

https://github.com/netroby/jdk9-dev/blob/master/jdk/src/java.base/share/classes/sun/security/ssl/CipherBox.java

这是日志的一部分,关键字发出来就是了, 

Caused by: javax.crypto.BadPaddingException: Insufficient buffer remaining for AEAD cipher fragment (0). Needs to be more than or equal to IV size (8) + tag size (16)
	at sun.security.ssl.CipherBox.applyExplicitNonce(CipherBox.java:936) ~[na:1.8.0_191]
	at sun.security.ssl.EngineInputRecord.decrypt(EngineInputRecord.java:190) ~[na:1.8.0_191]
	at sun.security.ssl.SSLEngineImpl.readRecord(SSLEngineImpl.java:963) ~[na:1.8.0_191]
	... 97 common frames omitted

 


其他:

国内差不到问题,fq了一下,发现在elasticsearch是已经存在的问题,

在 https://www.gitmemory.com/issue/opendistro-for-elasticsearch/security/70/509282011中有人提问了

javax.net.ssl.SSLException:Insufficient buffer remaining for AEAD cipher fragment (0)._第1张图片

[2019-07-02T21:59:28,877][ERROR][c.a.o.s.s.t.OpenDistroSecuritySSLNettyTransport] [es-data-1.elasticsearch-discovery.odfe.svc.cluster.local] SSL Problem Insufficient buffer remaining for AEAD cipher fragment (2). Needs to be more than tag size (16)
javax.net.ssl.SSLHandshakeException: Insufficient buffer remaining for AEAD cipher fragment (2). Needs to be more than tag size (16)
	at sun.security.ssl.Alert.createSSLException(Alert.java:128) ~[?:?]
	at sun.security.ssl.TransportContext.fatal(TransportContext.java:321) ~[?:?]
	at sun.security.ssl.TransportContext.fatal(TransportContext.java:264) ~[?:?]
	at sun.security.ssl.TransportContext.fatal(TransportContext.java:259) ~[?:?]

收到回复是 

 javax.net.ssl.SSLException:Insufficient buffer remaining for AEAD cipher fragment (0)._第2张图片

 在https://opendistro.github.io/for-elasticsearch-docs/docs/troubleshoot/#java-error-during-startup中显示

Java error during startup

You might see [ERROR][c.a.o.s.s.t.OpenDistroSecuritySSLNettyTransport] [odfe-node1] SSL Problem Insufficient buffer remaining for AEAD cipher fragment (2). Needs to be more than tag size (16) when starting Open Distro for Elasticsearch. This problem is a known issue with Java and doesn’t affect the operation of the cluster.

通过自带翻译器翻译

启动时出现Java错误

您可能会[ERROR][c.a.o.s.s.t.OpenDistroSecuritySSLNettyTransport] [odfe-node1] SSL Problem Insufficient buffer remaining for AEAD cipher fragment (2). Needs to be more than tag size (16)在启动Open Distro for Elasticsearch时看到。此问题是Java的已知问题,不会影响群集的运行。 

你可能感兴趣的:(问题收获)