-
Enhancement
-
Resolution: Fixed
-
P3
-
None
-
b28
-
generic
-
generic
Per feedback from Michael StJohns <mstjohns@comcast.net>:
-------------------
I've got an include file from Utimaco dated 27 March 2017 that includes the SHA3 assignments from PKCS11 - and their collateral says they implement SHA3 (this is all of the message digest, hmac and signature mechanisms, and key derivation mechanisms specified for PKCS11 3.0.
Safenet ProtectServer has it https://data-protection-updates.gemalto.com/2018/04/27/product-release-safenet-protecttoolkit-5-6/
I can't find anything that says nCipher has it.
That's two out of three of the big ones.
message digest, hmac and signature mechanisms, and key derivation mechanisms specified for PKCS11 3.0.
-------------------
There are a few PKCS11 vendors already supporting SHA3 even though PKCS11 v2.40 do not have SHA3 related mechanisms. The SHA3 mechanisms are in the works and identifiers have been reserved in the working version of PKCS11 header files, thus we should consider supporting SHA3 in SunPKCS11 provider.
-------------------
I've got an include file from Utimaco dated 27 March 2017 that includes the SHA3 assignments from PKCS11 - and their collateral says they implement SHA3 (this is all of the message digest, hmac and signature mechanisms, and key derivation mechanisms specified for PKCS11 3.0.
Safenet ProtectServer has it https://data-protection-updates.gemalto.com/2018/04/27/product-release-safenet-protecttoolkit-5-6/
I can't find anything that says nCipher has it.
That's two out of three of the big ones.
message digest, hmac and signature mechanisms, and key derivation mechanisms specified for PKCS11 3.0.
-------------------
There are a few PKCS11 vendors already supporting SHA3 even though PKCS11 v2.40 do not have SHA3 related mechanisms. The SHA3 mechanisms are in the works and identifiers have been reserved in the working version of PKCS11 header files, thus we should consider supporting SHA3 in SunPKCS11 provider.
- csr for
-
JDK-8256082 Add SHA3 support to SunPKCS11 provider
-
- Closed
-
- duplicates
-
JDK-8255407 Support key generation for HMAC mechanisms
-
- Closed
-
-
JDK-6273223 Add a KeyGenerator for HMAC keys
-
- Closed
-
- relates to
-
JDK-8271510 Failure in P11Signature sign with 2048-bit DSA keys and NSS Software Token (JDK-11)
-
- In Progress
-
-
JDK-8244154 Update SunPKCS11 provider with PKCS11 v3.0 header files
-
- Resolved
-
(2 links to)