-
Sub-task
-
Resolution: Delivered
-
P4
-
8u311, 11.0.13-oracle, 15
-
generic
-
generic
-
Verified
Issue | Fix Version | Assignee | Priority | Status | Resolution | Resolved In Build |
---|---|---|---|---|---|---|
JDK-8265010 | 11.0.13-oracle | Clifford Wayne | P4 | Closed | Delivered | |
JDK-8265009 | 8u311 | Clifford Wayne | P4 | Closed | Delivered |
The SunPKCS11 security provider can now be initialized with NSS when FIPS-enabled external modules are configured in the Security Modules Database (NSSDB). Before this change, when such a library was configured for NSS in non-FIPS mode, the SunPKCS11 provider would throw a RuntimeException with the message "FIPS flag set for non-internal module".
This change allows the JDK to work properly with recent NSS releases in GNU/Linux operating systems when the system-wide FIPS policy is turned on.
This change allows the JDK to work properly with recent NSS releases in GNU/Linux operating systems when the system-wide FIPS policy is turned on.
- backported by
-
JDK-8265009 Release Note: SunPKCS11 Initialization With NSS When External FIPS Modules Are in Security Modules Database
-
- Closed
-
-
JDK-8265010 Release Note: SunPKCS11 Initialization With NSS When External FIPS Modules Are in Security Modules Database
-
- Closed
-