mirror of
https://github.com/spring-projects/spring-boot.git
synced 2026-09-30 14:19:30 +00:00
Applying an SSL bundle to a Tomcat server replaced any `SSLHostConfig` already registered on the connector for a host name, so an `SSLHostConfig` could not be configured before Spring Boot applied a bundle to it. Reuse any existing `SSLHostConfig` during initial configuration, so an `SSLHostConfig` registered on the connector before the bundle is applied retains settings such as `trustManagerClassName`, `truststoreProvider`, or `truststoreAlgorithm`. Client authentication settings are only applied when creating a new `SSLHostConfig`, so the `certificateVerification` of an existing `SSLHostConfig` is retained rather than being overwritten with the value derived from the `server.ssl.client-auth` property. See gh-51466 Signed-off-by: Scott Frederick <scottyfred@gmail.com>