The Trust Manager provides a way to override the default SSL trust
validation rules. It allows the server to decide whether or not it
trusts the client that is contacting it. Using a Trust Manager you can
perform custom checks before continuing an SSL connection. For example,
you can use the Trust Manager to specify that only users from specific
localities, such as towns, states, or countries, or users with other
special attributes, can gain access via the SSL connection.
WebLogic Server provides the
This interface allows custom Trust Manager implementations to be called
during the SSL handshake. The custom implementation can override the
handshake error detected by the SSL implementation validation check or
raise an error based on its own certification rules.
WebLogic Server also provides the
weblogic.security.SSL.CertPath.TrustManager interface which application and custom code can use to control if outbound SSL uses certificate lookup and validation.<!>