创建密钥仓库用于存储证书文件keytool keystore server.keystore.jks alias imoockafka validity100000genkey创建CA openssl req new x509keyout ca key out ca cert days100000将生成的CA添加到客户信任库keytool keystore client.truststore.jks alias CARoot import file ca cert为broker提供信任库以及所有客户端签名了密钥的CA证书keytool keystore server.truststore.jks alias CARoot import file ca cert签名证书用自己生成的CA来签名前面生成的证书1从密钥仓库导出证书keytool keystore server.keystore.jks alias imoockafka certreq file cert file2用CA签名openss