Valerie Peng
|
8813b93095
|
8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
Added support for GCM, PSS, and other mechanisms
Reviewed-by: jnimeh
|
2019-06-11 21:30:28 +00:00 |
|
Jamil Nimeh
|
86be0cd272
|
8222678: Improve TLS negotiation
Reviewed-by: mullan, rhalade, mschoene
|
2019-05-02 17:43:26 -07:00 |
|
Weijun Wang
|
cd020a13c9
|
8222751: closed/test/jdk/sun/security/util/DerIndefLenConverter/IndefBerPkcs12.java fail
Reviewed-by: jnimeh, ascarpino, ssahoo, skoivu
|
2019-04-23 08:34:51 +08:00 |
|
Xue-Lei Andrew Fan
|
bac946663d
|
8218873: Improve JSSE endpoint checking
Reviewed-by: mullan, ahgross, rhalade
|
2019-04-11 17:58:18 -07:00 |
|
Jamil Nimeh
|
9785630af6
|
8219775: Certificate validation improvements
Reviewed-by: ascarpino, ssahoo, skoivu
|
2019-03-07 22:19:12 -08:00 |
|
Xue-Lei Andrew Fan
|
e06d193456
|
8218863: Better endpoint checks
Reviewed-by: ahgross, jnimeh, mullan, rhalade
|
2019-02-27 13:58:04 -08:00 |
|
Martin Balao
|
ebf8e1c0ac
|
8223482: Unsupported ciphersuites may be offered by a TLS client
Reviewed-by: xuelei
|
2019-05-28 19:01:38 -03:00 |
|
Claes Redestad
|
d3ccef96e5
|
8224589: Improve startup behavior of SecurityProperties
Reviewed-by: alanb
|
2019-05-22 13:19:04 +02:00 |
|
Weijun Wang
|
0f56400907
|
8223063: Support CNG RSA keys
Reviewed-by: mullan
|
2019-05-14 08:47:13 +08:00 |
|
Xue-Lei Andrew Fan
|
7aec6727ac
|
8221253: TLSv1.3 may generate TLSInnerPlainText longer than 2^14+1 bytes
Reviewed-by: jnimeh
|
2019-05-10 12:33:40 -07:00 |
|
Sean Mullan
|
10e5d0b854
|
8191808: Configurable read timeout for CRLs
Reviewed-by: xuelei, coffeys
|
2019-05-09 13:49:08 -04:00 |
|
Xue-Lei Andrew Fan
|
62109f5906
|
8219991: New fix of the deadlock in sun.security.ssl.SSLSocketImpl
Reviewed-by: alanb, dfuchs
|
2019-05-06 08:54:19 -07:00 |
|
Xue-Lei Andrew Fan
|
eb59ebb177
|
8216326: SSLSocket stream close() does not close the associated socket
Reviewed-by: jnimeh
|
2019-04-16 16:59:09 -07:00 |
|
Valerie Peng
|
3b6b6b3cb3
|
8216039: TLS with BC and RSASSA-PSS breaks ECDHServerKeyExchange
Add internal Signature init methods to select provider based on both key and parameter
Reviewed-by: xuelei
|
2019-04-10 02:35:18 +00:00 |
|
Xue-Lei Andrew Fan
|
8263b618ba
|
8221882: Use fiber-friendly java.util.concurrent.locks in JSSE
Reviewed-by: alanb, dfuchs
|
2019-04-05 11:28:23 -07:00 |
|
Xue-Lei Andrew Fan
|
d812742d68
|
8163326: Update the default enabled cipher suites preference
Reviewed-by: mullan
|
2019-04-04 14:19:29 -07:00 |
|
Weijun Wang
|
cf973e3db4
|
8219861: Add new keytool -showinfo -tls command for displaying TLS configuration information
Reviewed-by: mullan
|
2019-04-04 20:22:16 +08:00 |
|
Xue-Lei Andrew Fan
|
661b5f1534
|
8217610: TLSv1.3 fail with ClassException when EC keys are stored in PKCS11
Reviewed-by: valeriep
|
2019-04-03 16:23:22 -07:00 |
|
Weijun Wang
|
e0f37c15e4
|
8157404: Unable to read certain PKCS12 keystores from SequenceInputStream
Reviewed-by: xuelei
|
2019-04-02 10:17:30 +08:00 |
|
Xue-Lei Andrew Fan
|
2eb8492163
|
8168261: Use server cipher suites preference by default
Reviewed-by: mullan
|
2019-04-01 16:50:17 -07:00 |
|
Weijun Wang
|
61485b75a9
|
8221257: Improve serial number generation mechanism for keytool -gencert
Reviewed-by: xuelei, mullan
|
2019-03-30 16:32:23 +08:00 |
|
Valerie Peng
|
e90036145a
|
8220016: Clean up redundant RSA services in the SunJSSE provider
Removed duplicated RSA signature/KF/KPG support in SunJSSE
Reviewed-by: xuelei
|
2019-03-29 00:39:49 +00:00 |
|
Weijun Wang
|
9eb755e85e
|
8209901: Canonical file handling
Reviewed-by: mullan, alanb, ahgross
|
2019-04-22 13:01:57 +08:00 |
|
Michael McMahon
|
e4553cb2fa
|
8217997: Better socket support
Reviewed-by: alanb, ahgross, chegar, igerasim
|
2019-03-25 17:15:27 +00:00 |
|
Xue-Lei Andrew Fan
|
28adfb6d0d
|
8218889: Improperly use of the Optional API
Reviewed-by: jnimeh, wetmore
|
2019-03-22 13:47:37 -07:00 |
|
Xue-Lei Andrew Fan
|
901e797c0c
|
8221270: Duplicated synchronized keywords in SSLSocketImpl
Reviewed-by: mullan
|
2019-03-21 13:32:08 -07:00 |
|
Chris Hegarty
|
b34264403a
|
8220598: Malformed copyright year range in a few files in java.base
Reviewed-by: dfuchs, lancea, rriggs, weijun
|
2019-03-14 09:10:56 +00:00 |
|
Xue-Lei Andrew Fan
|
42cb9bf51a
|
8160247: Mark deprecated javax.security.cert APIs with forRemoval=true
Reviewed-by: weijun
|
2019-03-13 07:14:50 -07:00 |
|
Sean Mullan
|
939d40e1a8
|
8218618: Program fails when using JDK addressed by UNC path and using Security Manager
Reviewed-by: weijun
|
2019-03-07 14:29:43 -05:00 |
|
Xue-Lei Andrew Fan
|
4332a3dc56
|
8219990: Backout JDK-8219658
Reviewed-by: dfuchs
|
2019-03-01 09:42:04 -08:00 |
|
Xue-Lei Andrew Fan
|
25f0d60a58
|
8215430: Remove the internal package com.sun.net.ssl
Reviewed-by: chegar, mullan, wetmore
|
2019-03-01 08:35:14 -08:00 |
|
Xue-Lei Andrew Fan
|
8f84ae5684
|
8219658: Deadlock in sun.security.ssl.SSLSocketImpl
Reviewed-by: jnimeh
|
2019-02-28 10:04:27 -08:00 |
|
John Jiang
|
e4fd3054fc
|
8215524: Finished message validation failure should be decrypt_error alert
Reviewed-by: xuelei
|
2019-02-26 07:26:29 +08:00 |
|
Xue-Lei Andrew Fan
|
e6f6863cbc
|
8168069: X509TrustManagerImpl causes ClassLoader leaks with unparseable extensions
Reviewed-by: mullan
|
2019-02-20 18:46:30 -08:00 |
|
Xue-Lei Andrew Fan
|
1d7db01371
|
8219389: Delegated task created by SSLEngine throws BufferUnderflowException
Reviewed-by: ascarpino
|
2019-02-20 10:20:48 -08:00 |
|
Xue-Lei Andrew Fan
|
2ca0a6689e
|
4919790: Errors in alert ssl message does not reflect the actual certificate status
Reviewed-by: mullan
|
2019-02-14 14:19:29 -08:00 |
|
Weijun Wang
|
e320983f9f
|
8218888: keytool -genkeypair should not have the -destalias option
Reviewed-by: mullan
|
2019-02-13 21:24:13 +08:00 |
|
Anthony Scarpino
|
5a97e73e5a
|
8215790: Delegated task created by SSLEngine throws java.nio.BufferUnderflowException
Reviewed-by: jnimeh
|
2019-02-12 14:08:07 -08:00 |
|
Xue-Lei Andrew Fan
|
fca0af0487
|
8217835: Remove the experimental SunJSSE FIPS compliant mode
Reviewed-by: mullan
|
2019-02-12 13:36:15 -08:00 |
|
Xue-Lei Andrew Fan
|
9c16dc97a0
|
8218580: endpoint identification algorithm should be case-insensitive
Reviewed-by: jnimeh
|
2019-02-08 10:03:07 -08:00 |
|
Sean Coffey
|
63663b64d1
|
8218553: Enhance keystore load debug output
Reviewed-by: weijun
|
2019-02-07 12:09:17 +00:00 |
|
Andrey Turbanov
|
cfeb359800
|
8218022: Repeated words typos in java.base
Reviewed-by: alanb, lancea, mchung
|
2019-01-30 00:24:32 +00:00 |
|
Sean Mullan
|
95b848fa61
|
8217579: TLS_EMPTY_RENEGOTIATION_INFO_SCSV is disabled after 8211883
Reviewed-by: jnimeh, clanger
|
2019-01-29 10:24:38 -05:00 |
|
Xue-Lei Andrew Fan
|
0ea0aea6c2
|
8217820: Useless cast in ECUtil.java
Reviewed-by: jnimeh
|
2019-01-25 18:43:02 -08:00 |
|
Jesper Wilhelmsson
|
bc920bd00d
|
Merge
|
2019-01-22 19:56:19 +01:00 |
|
Sean Mullan
|
c9bea6a8ea
|
8216280: Allow later Symantec Policy distrust date for two Apple SubCAs
Reviewed-by: coffeys
|
2019-01-22 09:27:19 -05:00 |
|
Xue-Lei Andrew Fan
|
58c0287a18
|
8216045: The size of key_exchange may be wrong on FFDHE
Reviewed-by: jnimeh
|
2019-01-16 11:19:43 -08:00 |
|
Weijun Wang
|
1d014da14b
|
8215694: keytool cannot generate RSASSA-PSS certificates
Reviewed-by: xuelei
|
2019-01-16 11:25:55 +08:00 |
|
Weijun Wang
|
033465d815
|
8215776: Keytool importkeystore may mix up certificate chain entries when DNs conflict
Reviewed-by: xuelei
|
2019-01-22 21:18:45 +08:00 |
|
Weijun Wang
|
54815061a1
|
8215937: Check usages of security-related Resources files
Reviewed-by: mullan
|
2019-01-19 09:20:47 +08:00 |
|