-
Enhancement
-
Resolution: Fixed
-
P2
-
6
-
b83
-
sparc
-
solaris_10
Recent research (see comments) show that the MD5 digest algorithm is too weak. keytool and jarsigner are still using MD5withRSA as default signature algorithm in certificate creating and jar file signing. They should be changed to a stronger alternative immediately.
- relates to
-
JDK-6560733 keytool and jarsigner docs need to be updated to note that SHA1withRSA is now default signature alg
-
- Closed
-
-
JDK-6710316 keytool and jarsigner docs not updated for changes in 6406211
-
- Closed
-