Improve serial number generation mechanism for keytool -gencert

XMLWordPrintable

    • Type: Enhancement
    • Resolution: Fixed
    • Priority: P3
    • 13
    • Affects Version/s: None
    • Component/s: security-libs
    • None

      keytool -gencert currently uses java.util.Random to generate unique serial numbers for certificates. A more uniquely secure mechanism using java.security.SecureRandom is desirable, even though keytool -gencert is generally only used for generating test certificates.

            Assignee:
            Weijun Wang
            Reporter:
            Sean Mullan
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: