Certificate Authority

177 views
Skip to first unread message

Magnus Jensen

unread,
Feb 20, 2015, 4:47:00 PM2/20/15
to gat...@googlegroups.com

Reading this post:
I understan that it is possible for Gatling to create a certificate for you:


You can now use a Certificate Authority (either Gatling's or you own) with the Recorder, so you're no longer asked for Security Exceptions.


But how do I use this functionality?

I pressed the button "Generate CA", but I do not understand where to go further? 
And what will be the next step after this.
Do I need to export the "Gatling CA" to the server I am testing?



Magnus Jensen

unread,
Feb 21, 2015, 6:06:28 PM2/21/15
to gat...@googlegroups.com
what kind of functionality is behind the button "generate CA"?

Stéphane LANDELLE

unread,
Feb 22, 2015, 4:53:03 AM2/22/15
to gat...@googlegroups.com
I tried to improve the documentation regarding this point: https://github.com/gatling/gatling/issues/2579

If things are still unclear, I suggest to look on the internet for other sources regarding how HTTPS/SSL works and what certificates and certificate authorities are.

Stéphane Landelle
Lead developer


--
You received this message because you are subscribed to the Google Groups "Gatling User Group" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gatling+u...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

jols

unread,
Jun 7, 2016, 5:28:03 AM6/7/16
to Gatling User Group
Hi Magnus, 

Did you figured it out how to deal with the Certificates? If you have time, can you explain how to do that?
Thank you!

Kirk Wang

unread,
Jul 20, 2021, 1:55:31 AM7/20/21
to Gatling User Group
Hi ,

The same issue that I also encounter.
May I know how did you make it work?

Thanks,

Kirk

This message may contain confidential and/or privileged information. 
If you are not the addressee or authorized to receive this on behalf of the addressee you must not use, copy, disclose or take action based on this message or any information herein. 
If you have received this message in error, please advise the sender immediately by reply email and delete this message. Thank you.

Sébastien BREVET

unread,
Jul 20, 2021, 3:22:05 AM7/20/21
to gat...@googlegroups.com

Hi!

With a generated CA, the recorder will work as a Man In the Middle (MITM)
While this is a security issue in production, for your own testing purposes, this is fine.
It allows the recorder to decrypt what your server sends to your browser and reencrypt it before sending it to your browser.
This is needed since we cannot get (obviously) the private key from your server.

So, to trust the generated CA is a browser-side configuration.
Usually, you open the website through the recorder (proxy configuration, I guess) and accept the security risk (that you know is needed for your purpose).

Hope this helps!
Cheers!



--
You received this message because you are subscribed to the Google Groups "Gatling User Group" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gatling+u...@googlegroups.com.


--

Sébastien BREVET

Backend engineer

   
sbr...@gatling.io
gatling.io
   
facebook twitter linkedin 
Reply all
Reply to author
Forward
0 new messages