Valerie Peng
|
0b05ebed2e
|
7092821: java.security.Provider.getService() is synchronized and became scalability bottleneck
Changed Provider class to use ConcurrentHashMap and default providers to use putService()
Reviewed-by: weijun, mullan
|
2018-12-13 01:15:21 +00:00 |
|
Sean Mullan
|
dfd58a59ff
|
8207258: Distrust TLS server certificates anchored by Symantec Root CAs
Reviewed-by: weijun
|
2018-12-11 13:22:20 -05:00 |
|
Adam Petcher
|
e922ef3636
|
8214688: TLS 1.3 session resumption with hello retry request failed with "illegal_parameter"
Reviewed-by: jnimeh
|
2018-12-11 11:01:02 -05:00 |
|
Adam Petcher
|
7305281552
|
8208648: ECC Field Arithmetic Enhancements
Interal library enhancements to support ECC implementatation
Reviewed-by: jnimeh
|
2018-12-11 09:36:49 -05:00 |
|
Anthony Scarpino
|
2094d32f0f
|
8214098: sun.security.ssl.HandshakeHash.T12HandshakeHash constructor check backwards
Reviewed-by: xuelei
|
2018-12-10 09:19:30 -08:00 |
|
Roger Riggs
|
938b844088
|
8214971: Replace use of string.equals("") with isEmpty()
Reviewed-by: jlaskey, prappo, lancea, dfuchs, redestad
|
2018-12-07 11:51:17 -05:00 |
|
Jamil Nimeh
|
9947fc1532
|
8214129: SSL session resumption/SNI with TLS1.2 causes StackOverflowError
Reviewed-by: xuelei, jjiang
|
2018-12-06 22:05:31 -08:00 |
|
Sean Coffey
|
441d285620
|
8213952: Relax DNSName restriction as per RFC 1123
Reviewed-by: weijun, mullan, chegar
|
2018-12-05 17:33:01 +00:00 |
|
Weijun Wang
|
320616a865
|
8214179: Add groupname info into keytool -list and -genkeypair output
Reviewed-by: mullan
|
2018-12-01 21:58:05 +08:00 |
|
Xue-Lei Andrew Fan
|
388e1ebbba
|
8210985: Update the default SSL session cache size to 20480
Reviewed-by: jnimeh, mullan
|
2018-11-29 08:43:12 -08:00 |
|
Xue-Lei Andrew Fan
|
23ecdbbc1d
|
8214321: Misleading code in SSLCipher
Reviewed-by: ascarpino
|
2018-11-26 20:50:21 -08:00 |
|
Weijun Wang
|
b1c4b461f1
|
8214100: use of keystore probing results in unnecessary exception thrown
Reviewed-by: mullan
|
2018-11-27 08:51:20 +08:00 |
|
Adam Petcher
|
a5423f142c
|
8213202: Possible race condition in TLS 1.3 session resumption
Reviewed-by: jnimeh
|
2018-11-21 15:06:13 -05:00 |
|
Sean Coffey
|
73ad9c4a00
|
8148188: Enhance the security libraries to record events of interest
Reviewed-by: egahlin, mullan, weijun, xuelei
|
2018-11-20 13:12:48 +00:00 |
|
Weijun Wang
|
c20332c412
|
8212003: Deprecating the default keytool -keyalg option
Reviewed-by: mullan, xuelei
|
2018-11-17 18:11:23 +08:00 |
|
Jamil Nimeh
|
acd81b508e
|
8212885: TLS 1.3 resumed session does not retain peer certificate chain
Reviewed-by: xuelei, wetmore
|
2018-11-13 18:22:52 -08:00 |
|
Weijun Wang
|
65dc116bf6
|
8213400: Support choosing group name in keytool keypair generation
Reviewed-by: apetcher, xuelei
|
2018-11-14 08:46:25 +08:00 |
|
Valerie Peng
|
c8c41d1444
|
8211049: Second parameter of "initialize" method is not used
Use the specified random object instead of system default
Reviewed-by: weijun
|
2018-11-07 01:04:26 +00:00 |
|
Anthony Scarpino
|
f7fc720c9c
|
8211339: NPE during SSL handshake caused by HostnameChecker
Reviewed-by: xuelei
|
2018-11-06 10:10:18 -08:00 |
|
Mandy Chung
|
9ffe7e1205
|
8211122: Reduce the number of internal classes made accessible to jdk.unsupported
Reviewed-by: alanb, dfuchs, kvn
|
2018-11-06 10:01:16 -08:00 |
|
Xue-Lei Andrew Fan
|
413d5e8c61
|
8212738: Incorrectly named signature scheme ecdsa_secp512r1_sha512
Reviewed-by: ascarpino
|
2018-10-30 19:47:16 -07:00 |
|
Jaikiran Pai
|
21341a37af
|
8212752: Typo in SSL log message related to inactive/disabled signature scheme
Reviewed-by: coffeys
|
2018-10-22 10:47:28 +01:00 |
|
Jamil Nimeh
|
137e3161c4
|
8211806: TLS 1.3 handshake server name indication is missing on a session resume
Reviewed-by: xuelei, wetmore
|
2018-10-19 18:05:50 -07:00 |
|
Adam Petcher
|
1c4396ebae
|
8208209: Improve TLS connection stability again
Reviewed-by: xuelei
|
2018-07-30 13:53:30 -04:00 |
|
Jamil Nimeh
|
a40d0a0ee1
|
8210989: RSASSA-PSS certificate cannot be selected for client auth on TLSv1.2
Reviewed-by: xuelei
|
2018-10-16 12:05:57 -07:00 |
|
Jamil Nimeh
|
180a8773fb
|
8211866: TLS 1.3 CertificateRequest message sometimes offers disallowed signature algorithms
Reviewed-by: xuelei
|
2018-10-16 11:24:41 -07:00 |
|
Claes Redestad
|
d5d74f0e26
|
8211860: Avoid reading security properties eagerly on Manifest class initialization
Reviewed-by: mullan, alanb
|
2018-10-08 18:16:03 +02:00 |
|
Ivan Gerasimov
|
2ae27da3bc
|
8200381: Typos in javadoc - missing verb "be" and alike
Reviewed-by: lancea, darcy, wetmore
|
2018-10-02 10:19:07 -07:00 |
|
Matthias Baesken
|
be56cc5bf3
|
8207768: Improve exception messages during manifest parsing of jar archives
Reviewed-by: clanger, mullan, weijun
|
2018-09-12 11:13:09 +02:00 |
|
Xue-Lei Andrew Fan
|
89a4157528
|
8210974: No extensions debug log for ClientHello
Reviewed-by: jnimeh, wetmore
|
2018-09-20 14:19:53 -07:00 |
|
Jamil Nimeh
|
a24c991cd3
|
8210846: TLSv.1.3 interop problems with OpenSSL 1.1.1 when used on the client side with mutual auth
Reviewed-by: wetmore
|
2018-09-19 16:07:03 -07:00 |
|
Jamil Nimeh
|
962e755c3a
|
8140466: ChaCha20 and Poly1305 TLS Cipher Suites
Reviewed-by: xuelei, mullan
|
2018-09-17 15:25:42 -07:00 |
|
Anthony Scarpino
|
b27f471bdd
|
8209031: SSLSocket should throw an exception when configuring DTLS
Reviewed-by: xuelei
|
2018-09-17 14:04:46 -07:00 |
|
Xue-Lei Andrew Fan
|
5de8b5c59a
|
8209916: NPE in SupportedGroupsExtension
Reviewed-by: jnimeh, wetmore
|
2018-09-13 17:11:04 -07:00 |
|
Xue-Lei Andrew Fan
|
b7fdc4943f
|
8210334: TLS 1.3 server fails if ClientHello doesn't have pre_shared_key and psk_key_exchange_modes
Reviewed-by: ascarpino, wetmore
|
2018-09-05 21:01:39 -07:00 |
|
Jesper Wilhelmsson
|
d40735db17
|
Merge
|
2018-08-29 19:48:28 +02:00 |
|
Adam Petcher
|
c3cc65bd08
|
8201317: X25519/X448 code improvements
Minor code/comment improvements
Reviewed-by: xuelei
|
2018-08-29 12:00:47 -04:00 |
|
Xue-Lei Andrew Fan
|
8b373393e6
|
8209965: The "supported_groups" extension in ServerHellos
Reviewed-by: ascarpino
|
2018-08-27 09:46:24 -07:00 |
|
Bradford Wetmore
|
5b511a4a78
|
8207317: SSLEngine negotiation fail exception behavior changed from fail-fast to fail-lazy
Reviewed-by: xuelei
|
2018-08-21 11:30:48 -07:00 |
|
Rajan Halade
|
02a3769cfa
|
8206176: Remove the temporary tls13VN field
Reviewed-by: xuelei, wetmore
|
2018-08-14 17:21:44 -07:00 |
|
Xue-Lei Andrew Fan
|
66e8f27bd8
|
8207009: TLS 1.3 half-close and synchronization issues
Reviewed-by: jnimeh, mullan, wetmore
|
2018-08-14 16:47:56 -07:00 |
|
Leo Jiang
|
6c703b8589
|
8207948: JDK 11 L10n resource file update msg drop 10
Reviewed-by: naoto
|
2018-07-25 22:48:53 -07:00 |
|
Xue-Lei Andrew Fan
|
d2b2780859
|
8208166: Still unable to use custom SSLEngine with default TrustManagerFactory after JDK-8207029
Reviewed-by: ascarpino
|
2018-07-25 17:21:04 -07:00 |
|
Jamil Nimeh
|
8158cca17d
|
8207237: SSLSocket#setEnabledCipherSuites is accepting empty string
Reviewed-by: xuelei
|
2018-07-25 09:48:31 -07:00 |
|
Valerie Peng
|
df08003471
|
8206171: Signature#getParameters for RSASSA-PSS throws ProviderException when not initialized
Changed SunRsaSign and SunMSCAPI provider to return null and updated javadoc
Reviewed-by: weijun, mullan
|
2018-07-23 23:18:19 +00:00 |
|
Weijun Wang
|
32a2f54b64
|
8207223: SSL Handshake failures are reported with more generic SSLException
Reviewed-by: xuelei
|
2018-07-21 21:46:42 +08:00 |
|
Anthony Scarpino
|
4e46cc1392
|
8204196: integer cleanup
Reviewed-by: xuelei
|
2018-07-20 09:55:15 -07:00 |
|
Ivan Gerasimov
|
acaf155de7
|
8209851: Algorithm name is compared via reference identity
Reviewed-by: mullan
|
2018-08-23 09:36:13 -07:00 |
|
Sean Coffey
|
50ec35819d
|
8209129: Further improvements to cipher buffer management
Reviewed-by: weijun, igerasim
|
2018-08-23 11:37:14 +01:00 |
|
Jamil Nimeh
|
8eb45613db
|
8208350: Disable all DES cipher suites
Reviewed-by: xuelei, mullan
|
2018-08-20 15:37:47 -07:00 |
|