Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-6323647

FIPS mode tweaks

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Fixed
    • Icon: P3 P3
    • 6
    • 6
    • security-libs
    • b63
    • generic
    • generic

      Some more tweaks to 6313675 are necessary. In FIPS mode, we should also ensure that:

       . we only use the random number generator from the FIPS crypto provider
       . crypto operations during certificate verification (in particular signature verification) happen using the FIPS crypto provider
       . we only use private keys/certs stored in the crypto provider for authentication.

            andreas Andreas Sterbenz
            andreas Andreas Sterbenz
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: