Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-8168822

Document that algorithm restrictions do not apply to trusted anchors

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • P4
    • 9
    • 8u112, 9
    • security-libs
    • None

    Description

      The algorithm constraint does not apply to root/trusted certificate as the application or customer has made the decision to trust the cert although it is weak or broken.

      Although the cert path definition does not contain the trusted certificate, it is not easy to understand this point for general developers. Better to document explicitly that algorithm restrictions (jdk.certpath.disabledAlgorithms, jdk.jar.disabledAlgorithms) do not apply to trusted certs.

      Attachments

        Issue Links

          Activity

            People

              xuelei Xuelei Fan
              xuelei Xuelei Fan
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: