-
Enhancement
-
Resolution: Fixed
-
P2
-
7, 8, 11, 14
-
b29
Issue | Fix Version | Assignee | Priority | Status | Resolution | Resolved In Build |
---|---|---|---|---|---|---|
JDK-8236219 | 15 | Anthony Scarpino | P2 | Resolved | Fixed | b02 |
JDK-8257582 | 13.0.6 | Anthony Scarpino | P2 | Resolved | Fixed | b02 |
JDK-8257160 | 13-pool | Unassigned | P2 | Closed | Duplicate | |
JDK-8238182 | 11.0.9-oracle | Ravi Reddy | P2 | Closed | Fixed | b01 |
JDK-8246649 | 11.0.9 | Goetz Lindenmaier | P2 | Resolved | Fixed | b01 |
JDK-8259484 | openjdk8u292 | Alexandr Scherbatiy | P2 | Resolved | Fixed | b01 |
JDK-8238051 | 8u271 | Ravi Reddy | P2 | Closed | Fixed | b01 |
JDK-8251653 | emb-8u271 | Ravi Reddy | P2 | Resolved | Fixed | team |
JDK-8238052 | 7u281 | Ravi Reddy | P2 | Closed | Fixed | b01 |
JDK-8263373 | openjdk7u | Alexandr Scherbatiy | P2 | Resolved | Fixed | master |
Adding support to the named curves is straight forward to implement; however, with many named curves, the disabledAlgorithm properties will overwhelm with named curves. To relieve this, a new security property, jdk.disabled.namedCurves, is implemented that can list the named curves common to all the disabledAlgorithm properties. To use the new property in the disabledAlgorithm properties, the full property name is used as an entry. Users can still add individual named curves to disabledAlgorithms properties separate from this new property..
- backported by
-
JDK-8236219 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8246649 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8251653 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8257582 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8259484 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8263373 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Resolved
-
JDK-8238051 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Closed
-
JDK-8238052 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Closed
-
JDK-8238182 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Closed
-
JDK-8257160 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Closed
- csr for
-
JDK-8235540 Disable weak named curves by default in TLS, CertPath, and Signed JAR
- Closed
- relates to
-
JDK-8226374 Restrict TLS signature schemes and named groups
- Resolved
-
JDK-8235710 Remove the legacy elliptic curves
- Resolved
-
JDK-8248745 Add jarsigner and keytool tests for restricted algorithms
- Resolved
-
JDK-8233227 Update TLS disabledAlgorithms curve syntax
- Closed
-
JDK-8246330 Add TLS Tests for Legacy ECDSA curves
- Resolved