A Reverse Hostname Lookup Will Be Performed During SSL Handshake Even After Host Name Verification Is Disabled (Doc ID 2008118.1)

Last updated on AUGUST 03, 2017

Applies to:

Oracle WebLogic Server - Version 10.3.5 and later
Information in this document applies to any platform.

Symptoms

A reverse hostname lookup will be performed during SSL handshake even after host name verification is disabled(-Dweblogic.security.SSL.ignoreHostnameVerification=true).

The following are the possible symptoms:
   Calls to the method InetAddress.getHostName take a long time or the JVM hangs.

Thread dumps look like:

"[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'" daemon prio=6 tid=XXX... java.lang.Thread.State: RUNNABLE
at java.net.Inet4AddressImpl.getHostByAddr(Native Method)
at java.net.InetAddress$1.getHostByAddr(InetAddress.java:853)
  at java.net.InetAddress.getHostFromNameService(InetAddress.java:533)
  at java.net.InetAddress.getHostName(InetAddress.java:476)
  at java.net.InetAddress.getHostName(InetAddress.java:448)
  at com.certicom.tls.interfaceimpl.CertificateSupport.isServerHostnameValid(Unknown Source)
  at com.certicom.tls.record.handshake.ClientStateReceivedServerHello.handle(Unknown Source)
  at com.certicom.tls.record.handshake.HandshakeHandler.handleHandshakeMessage(Unknown Source)
  at com.certicom.tls.record.handshake.HandshakeHandler.handleHandshakeMessages(Unknown Source)
  at com.certicom.tls.record.MessageInterpreter.interpretContent(Unknown Source)
  at com.certicom.tls.record.MessageInterpreter.decryptMessage(Unknown Source)
  at com.certicom.tls.record.ReadHandler.processRecord(Unknown Source)
  at com.certicom.tls.record.ReadHandler.readRecord(Unknown Source)
  at com.certicom.tls.record.ReadHandler.readUntilHandshakeComplete(Unknown Source)
  at com.certicom.tls.interfaceimpl.TLSConnectionImpl.completeHandshake(Unknown Source)
  ...

Changes

 

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms