Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-6878826

Add support for Extended Validation certificates

XMLWordPrintable

    • Icon: New Feature New Feature
    • Resolution: Won't Fix
    • Icon: P3 P3
    • None
    • 7
    • security-libs
    • None

      We should investigate what is needed to fully support Extended Validation certificates in our SSL/TLS implementation. For example, we may want to enable revocation checking via OCSP by default (see 6869739) and add support for OCSP stapling (part of the TLS extensions RFC 3546) and perhaps new APIs and security dialogs that identify SSL/TLS connections that use EV certs.

      See: http://cabforum.org/EV_Certificate_Guidelines_V11.pdf (GUIDELINES FOR THE ISSUANCE AND MANAGEMENT OF EXTENDED VALIDATION CERTIFICATES) for more specific information on EV certs.

            xuelei Xuelei Fan
            mullan Sean Mullan
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: