Ivan Gerasimov
|
82671e9ce4
|
8163237: Restrict the use of EXPORT cipher suites
Reviewed-by: mullan, igerasim, rhalade, jnimeh
|
2017-10-16 09:45:57 -07:00 |
Sean Coffey
|
672c24f1e3
|
8072452: Support DHE sizes up to 8192-bits and DSA sizes up to 3072-bits
8154344: sun/security/pkcs11/KeyAgreement/SupportedDHKeys.java fails on solaris
Reviewed-by: xuelei
|
2017-10-23 02:28:19 -07:00 |
Abhijit Saha
|
66033f391f
|
Merge
|
2017-10-10 17:15:56 -07:00 |
Ivan Gerasimov
|
4f58554347
|
8158633: BASE64 encoded cert not correctly parsed with UTF-16
Reviewed-by: mullan
|
2017-10-06 21:26:55 -07:00 |
Ivan Gerasimov
|
9945fb90b2
|
8187023: Cannot read pkcs11 config file in UTF-16 environment
Reviewed-by: ascarpino
|
2017-10-06 21:25:40 -07:00 |
Rob McKenna
|
88bb749c4f
|
8184328: JDK 8u131 socketRead0 hang at SSL read
Reviewed-by: xuelei, chegar, coffeys
|
2017-09-27 14:00:28 +01:00 |
Abhijit Saha
|
3d3b07c481
|
Merge
|
2017-08-23 13:10:56 -07:00 |
Abhijit Saha
|
0cd112f6dd
|
Merge
|
2017-08-15 13:42:45 -07:00 |
Prasadarao Koppula
|
a00b33bdfe
|
8057810: New defaults for DSA keys in jarsigner and keytool
Reviewed-by: coffeys, valeriep
|
2017-08-15 11:46:02 -07:00 |
Sean Coffey
|
a2d837f50c
|
8182879: Add warnings to keytool when using JKS and JCEKS
Reviewed-by: mullan, weijun
|
2017-08-01 16:36:54 +01:00 |
Prasadarao Koppula
|
79ae87d905
|
8057810: New defaults for DSA keys in jarsigner and keytool
Reviewed-by: coffeys, valeriep
|
2017-08-04 13:02:18 +05:30 |
Sean Coffey
|
87597f417d
|
8148108: Disable Diffie-Hellman keys less than 1024 bits
Reviewed-by: xuelei
|
2017-08-08 11:52:28 +01:00 |
Sean Coffey
|
e33989471c
|
8182879: Add warnings to keytool when using JKS and JCEKS
Reviewed-by: mullan, weijun
|
2017-08-01 16:36:54 +01:00 |
Weijun Wang
|
035a32ff1f
|
8177569: keytool should not warn if signature algorithm used in cacerts is weak
Reviewed-by: mullan
|
2017-07-25 14:36:20 +01:00 |
Weijun Wang
|
b34deeeb24
|
8171319: keytool should print out warnings when reading or generating cert/cert req using weak algorithms
Reviewed-by: coffeys
|
2017-07-26 11:21:32 +01:00 |
Weijun Wang
|
fb6c1f0e7e
|
8177569: keytool should not warn if signature algorithm used in cacerts is weak
Reviewed-by: mullan
|
2017-07-25 14:36:20 +01:00 |
Weijun Wang
|
b8654e8f4e
|
8171319: keytool should print out warnings when reading or generating cert/cert req using weak algorithms
Reviewed-by: coffeys
|
2017-07-26 11:21:32 +01:00 |
Weijun Wang
|
5e60b9b7d9
|
8029659: Keytool, print key algorithm of certificate or key entry
Reviewed-by: xuelei
|
2017-07-25 13:02:03 +01:00 |
Weijun Wang
|
d2fcc8cce1
|
8029659: Keytool, print key algorithm of certificate or key entry
Reviewed-by: xuelei
|
2017-07-25 13:02:03 +01:00 |
Prasadarao Koppula
|
9dacb4a632
|
8178794: Correct Kerberos ticket grants
Reviewed-by: coffeys, valeriep
|
2017-07-24 13:56:39 +05:30 |
Prasadarao Koppula
|
63857370f5
|
8178794: Correct Kerberos ticket grants
Reviewed-by: coffeys, valeriep
|
2017-07-24 13:56:39 +05:30 |
Ivan Gerasimov
|
65ccaf9928
|
8181048: Refactor existing providers to refer to the same constants for default values for key length
Reviewed-by: mullan, ahgross
|
2017-07-21 03:33:04 -07:00 |
Abhijit Saha
|
be9310b24d
|
Merge
|
2017-08-08 09:56:25 -07:00 |
Abhijit Saha
|
8f947e2c77
|
Merge
|
2017-08-01 14:35:17 -07:00 |
John Jiang
|
d121cf8df5
|
8137255: sun/security/provider/NSASuiteB/TestDSAGenParameterSpec.java timeouts intermittently
Sun/security/provider/NSASuiteB/TestDSAGenParameterSpec.java timeouts intermittently due to large DSA key parameter generation.
Reviewed-by: valeriep
|
2017-09-08 10:41:02 -07:00 |
Sean Coffey
|
c5042ff7d8
|
8072452: Support DHE sizes up to 8192-bits and DSA sizes up to 3072-bits
8154344: sun/security/pkcs11/KeyAgreement/SupportedDHKeys.java fails on solaris
Reviewed-by: xuelei
|
2017-10-23 02:28:19 -07:00 |
Abhijit Saha
|
466c5c865a
|
Merge
|
2017-07-10 15:41:57 -07:00 |
Bhanu Prakash Gopularam
|
9efb9fbf94
|
8179564: Missing @bug for tests added with JDK-8165367
Updated bugid in tests
Reviewed-by: robm
|
2017-07-05 23:50:20 -07:00 |
Bhanu Prakash Gopularam
|
0061e590c9
|
8179564: Missing @bug for tests added with JDK-8165367
Updated bugid in tests
Reviewed-by: robm
|
2017-07-05 23:50:20 -07:00 |
Abhijit Saha
|
eef4dd64e2
|
Merge
|
2017-07-03 15:26:55 -07:00 |
Abhijit Saha
|
6bfd9cb6d4
|
Merge
|
2017-07-02 22:41:21 -07:00 |
Abhijit Saha
|
03d0f7a714
|
Merge
|
2017-06-25 21:56:40 -07:00 |
Bhanu Prakash Gopularam
|
ac315e4bd0
|
8181975: Run sun/security/pkcs11 tests on Mac
Updated path for nss-libs for MacOSX platform
Reviewed-by: coffeys
|
2017-06-22 01:33:27 -07:00 |
Ivan Gerasimov
|
b91200f11a
|
8182614: Backout JDK-8140436 from 8u161
Reviewed-by: xuelei
|
2017-06-21 08:57:17 -07:00 |
Ivan Gerasimov
|
e5c294545b
|
8181439: Test the jdk.tls.namedGroups System Property
Reviewed-by: valeriep
|
2017-06-08 13:58:40 -07:00 |
Bhanu Prakash Gopularam
|
340e1f703c
|
8165367: Additional tests for JEP 288: Disable SHA-1 Certificates
The new tests just focus on the usage constraints TLSSever and TLSClient with TLS communication
Reviewed-by: ascarpino
|
2017-05-24 02:25:28 -07:00 |
Ivan Gerasimov
|
236f3c363c
|
8140436: Negotiated Finite Field Diffie-Hellman Ephemeral Parameters for TLS
Reviewed-by: valeriep, jnimeh, apetcher
|
2017-05-25 21:22:55 -07:00 |
Bhanu Prakash Gopularam
|
d8057c00e0
|
8165367: Additional tests for JEP 288: Disable SHA-1 Certificates
The new tests just focus on the usage constraints TLSSever and TLSClient with TLS communication
Reviewed-by: ascarpino
|
2017-05-24 02:25:28 -07:00 |
Anthony Scarpino
|
0abfc3cbe7
|
8176536: Improved algorithm constraints checking
Reviewed-by: mullan
|
2017-03-23 08:44:17 -07:00 |
Ivan Gerasimov
|
f44d6056e7
|
8037346: Need to terminate server process if client runs into problems
Reviewed-by: weijun
|
2017-05-16 10:45:29 -07:00 |
Rob McKenna
|
60b34cafd8
|
Merge
|
2017-05-05 06:08:19 -07:00 |
Prasadarao Koppula
|
42f3e94e76
|
8157035: Use stronger algorithms and keys for JSSE testing
Reviewed-by: coffeys
|
2017-04-13 14:22:03 +01:00 |
Abhijit Saha
|
af5fc8173e
|
Merge
|
2017-04-04 11:57:35 -07:00 |
Anthony Scarpino
|
70c77671bd
|
8176536: Improved algorithm constraints checking
Reviewed-by: mullan
|
2017-03-23 08:41:32 -07:00 |
Ivan Gerasimov
|
5e69f509ba
|
8175251: Failed to load RSA private key from pkcs12
Enhanced DER library with extra arg to control leading-0 check
Reviewed-by: mullan
|
2017-03-17 11:55:24 -07:00 |
Abhijit Saha
|
2152587c7e
|
Merge
|
2018-01-26 10:06:34 -08:00 |
Ivan Gerasimov
|
4026bed3a0
|
8175075: Add 3DES to the default disabled algorithm security property
Reviewed-by: xuelei, mullan, rhalade
|
2018-01-23 08:17:25 -08:00 |
Ivan Gerasimov
|
eaae3debbe
|
8190674: sun/security/tools/jarsigner/TimestampCheck.java failed with java.nio.file.NoSuchFileException: ts2.cert
Reviewed-by: mullan
|
2018-01-17 17:47:16 -08:00 |
Ivan Gerasimov
|
c8f38d4ac2
|
8180289: jarsigner treats timestamped signed jar invalid after the signer cert expires
Reviewed-by: mullan
|
2018-01-17 17:46:25 -08:00 |
Ivan Gerasimov
|
ca89a35306
|
8172529: Use PKIXValidator in jarsigner
Reviewed-by: xuelei, mullan, alanb
|
2018-01-17 17:45:24 -08:00 |
Ivan Gerasimov
|
0bc41aff7b
|
8158887: sun/security/tools/jarsigner/concise_jarsigner.sh timed out
Reviewed-by: xuelei
|
2018-01-17 17:43:56 -08:00 |
Ivan Gerasimov
|
cf8341aa4b
|
8146377: test/sun/security/tools/jarsigner/concise_jarsigner.sh failing
Reviewed-by: xuelei
|
2018-01-17 17:42:32 -08:00 |
Ivan Gerasimov
|
4be03d39fb
|
8130132: jarsigner should emit warning if weak algorithms or keysizes are used
Reviewed-by: mullan
|
2018-01-17 17:41:05 -08:00 |
Ivan Gerasimov
|
2d5b8c8d8b
|
8049834: Two security tools tests do not run with only JRE
Reviewed-by: mullan
|
2018-01-17 17:39:38 -08:00 |
Ivan Gerasimov
|
1a214dc546
|
8087144: sun/security/krb5/auto/MaxRetries.java fails with Retry count is -1 less
8153146: sun/security/krb5/auto/MaxRetries.java failed with timeout
Reviewed-by: xuelei
|
2016-09-30 21:57:49 +03:00 |
Ivan Gerasimov
|
d237394910
|
8077670: sun/security/krb5/auto/MaxRetries.java may fail with BindException
Reviewed-by: chegar
|
2016-09-30 21:55:30 +03:00 |
Ivan Gerasimov
|
abf99a55b8
|
8181048: Refactor existing providers to refer to the same constants for default values for key length
Reviewed-by: mullan, ahgross
|
2017-08-21 13:32:56 -07:00 |
Anthony Scarpino
|
53577d1fda
|
8176536: Improved algorithm constraints checking
Reviewed-by: mullan
|
2017-03-23 08:44:17 -07:00 |
Abhijit Saha
|
710e076f47
|
Merge
|
2017-03-09 21:16:36 -08:00 |
Sean Coffey
|
06cf35197e
|
8173783: IllegalArgumentException: jdk.tls.namedGroups
Reviewed-by: xuelei, wetmore
|
2017-02-08 12:10:00 +00:00 |
Svetlana Nikandrova
|
de4e8cac97
|
8164533: sun/security/ssl/SSLSocketImpl/CloseSocket.java failed with "Error while cleaning up threads after test"
Reviewed-by: xuelei
|
2016-08-29 20:55:06 +03:00 |
Sean Coffey
|
d3b6af46f5
|
8162916: Test sun/security/krb5/auto/UnboundSSL.java fails
Reviewed-by: weijun, asmotrak
|
2016-08-19 07:42:29 +01:00 |
Ramanand Patil
|
84e7a64897
|
8171121: Enhancing jar checking
Reviewed-by: ascarpino
|
2016-12-26 16:00:45 +05:30 |
Rob McKenna
|
c8bafaeada
|
8170131: Certificates not being blocked by jdk.tls.disabledAlgorithms property
8166393: disabledAlgorithms property should not be strictly parsed
Reviewed-by: mullan
|
2016-12-09 16:22:45 +00:00 |
Ivan Gerasimov
|
a8f74f0a50
|
8059212: Modify sun/security/smartcardio manual regression tests so that they do not just fail if no cardreader found
Reviewed-by: mullan
|
2016-11-30 13:46:05 +03:00 |
Ramanand Patil
|
fc3e9ac7d9
|
8169688: Backout (remove) MD5 from jdk.jar.disabledAlgorithms for January CPU
Reviewed-by: igerasim
|
2016-12-05 10:07:47 -08:00 |
Rob McKenna
|
906af4f8a6
|
8169911: Enhanced tests for jarsigner -verbose -verify after JDK-8163304
Reviewed-by: coffeys
|
2016-11-23 14:35:00 +00:00 |
Sean Coffey
|
9d8281d062
|
8166432: Bad 8u112 merge of sun/security/tools/jarsigner/warnings/Test.java
Reviewed-by: vinnie
|
2016-11-14 10:29:58 -08:00 |
Rob McKenna
|
0ec5ee77cf
|
8163304: jarsigner -verbose -verify should print the algorithms used to sign the jar
Reviewed-by: weijun
|
2016-10-21 14:04:14 +01:00 |
Sean Coffey
|
f1d95402e2
|
8148516: Improve the default strength of EC in JDK
Reviewed-by: xuelei
|
2016-09-19 11:44:50 +01:00 |
Ivan Gerasimov
|
14a439400a
|
8165071: Expand TLS support
Reviewed-by: jnimeh, ahgross, asmotrak
|
2016-09-18 23:22:46 +03:00 |
Ivan Gerasimov
|
5c3c5ef882
|
8165816: jarsigner -verify shows jar unsigned if it was signed with a weak algorithm
Reviewed-by: mullan
|
2016-09-14 11:41:41 +03:00 |
Abhijit Saha
|
1cf1085764
|
Merge
|
2016-08-08 15:29:16 -07:00 |
Ivan Gerasimov
|
3accb41201
|
8155973: Tighten jar checks
Reviewed-by: mullan, igerasim, ahgross
|
2016-07-29 00:00:36 +03:00 |
Abhijit Saha
|
15488ce26d
|
Merge
|
2016-07-20 15:10:44 -07:00 |
Chris Hegarty
|
f2d179b05b
|
8160838: Better HTTP service
Reviewed-by: ahgross, alanb, michaelm
|
2016-07-18 14:38:10 +01:00 |
Chris Hegarty
|
45d7db1c27
|
8160838: Better HTTP service
Reviewed-by: ahgross, alanb, michaelm
|
2016-07-18 14:38:10 +01:00 |
Ivan Gerasimov
|
457c7217bb
|
8160518: Semicolon is not recognized as comment starting character (Kerberos)
Reviewed-by: weijun, coffeys
|
2016-07-12 21:55:57 +03:00 |
Ivan Gerasimov
|
852b79bc43
|
8153948: sun/security/mscapi/ShortRSAKey1024.sh fails with "Field length overflow"
Reviewed-by: coffeys, xuelei
|
2016-07-05 00:19:34 +03:00 |
Artem Kosarev
|
b481b9418a
|
8075299: Additional tests for krb5 settings
Additional tests for 6857795
Reviewed-by: weijun
|
2016-06-08 16:19:38 +00:00 |
Ivan Gerasimov
|
2340375521
|
8175251: Failed to load RSA private key from pkcs12
Enhanced DER library with extra arg to control leading-0 check
Reviewed-by: mullan
|
2017-03-17 11:55:24 -07:00 |
Sean Coffey
|
12ec028423
|
8173783: IllegalArgumentException: jdk.tls.namedGroups
Reviewed-by: xuelei, wetmore
|
2017-02-08 12:10:00 +00:00 |
Abhijit Saha
|
0cc47e1d8b
|
Merge
|
2016-05-23 09:11:51 -07:00 |
Ivan Gerasimov
|
7fc707d8d0
|
8146387: Test SSLSession/SessionCacheSizeTests socket accept timed out
Reviewed-by: weijun, wetmore
|
2016-04-26 20:31:59 +03:00 |
Ivan Gerasimov
|
97f5b2160f
|
8146669: Test SessionTimeOutTests fails intermittently
Reviewed-by: mullan
|
2016-04-26 20:31:56 +03:00 |
Ivan Gerasimov
|
5c4771e7b7
|
8037557: test SessionCacheSizeTests.java timeout
Reviewed-by: weijun
|
2016-04-26 20:31:58 +03:00 |
Ivan Gerasimov
|
2e6171c321
|
8144313: Test SessionTimeOutTests can be timeout
Reviewed-by: mullan
|
2016-04-26 20:31:54 +03:00 |
Rob McKenna
|
269f3dc357
|
Merge
|
2016-04-24 20:31:17 +01:00 |
Abhijit Saha
|
9bec1bcc7e
|
Merge
|
2016-04-15 14:39:06 -07:00 |
Abhijit Saha
|
7823911d6a
|
Merge
|
2016-04-11 15:00:08 -07:00 |
Ivan Gerasimov
|
6cf48834cf
|
8143913: MSCAPI keystore should accept Certificate[] in setEntry()
6483657: MSCAPI provider does not create unique alias names
Reviewed-by: vinnie
|
2016-04-06 08:27:01 +03:00 |
Ivan Gerasimov
|
b36c2045ac
|
8143913: MSCAPI keystore should accept Certificate[] in setEntry()
6483657: MSCAPI provider does not create unique alias names
Reviewed-by: vinnie
|
2016-04-06 08:27:01 +03:00 |
Abhijit Saha
|
bb0b984b57
|
Merge
|
2016-04-05 10:15:23 -07:00 |
Abhijit Saha
|
746170e4f5
|
Merge
|
2017-01-26 12:19:19 -08:00 |
Ramanand Patil
|
dbd774505b
|
8171121: Enhancing jar checking
Reviewed-by: ascarpino
|
2016-12-26 16:00:45 +05:30 |
Abhijit Saha
|
da2df84f6b
|
Merge
|
2016-12-20 13:42:18 -08:00 |
Rob McKenna
|
b5932d2fc4
|
8170131: Certificates not being blocked by jdk.tls.disabledAlgorithms property
8166393: disabledAlgorithms property should not be strictly parsed
Reviewed-by: mullan
|
2016-12-09 16:22:45 +00:00 |
Ramanand Patil
|
09b7cfd169
|
8169688: Backout (remove) MD5 from jdk.jar.disabledAlgorithms for January CPU
Reviewed-by: igerasim
|
2016-12-04 23:52:33 +05:30 |
Maxim Soloviev
|
26a50b0c39
|
8169944: sun/security/tools tests fail with CompilationError
Reviewed-by: coffeys
|
2016-11-23 19:07:17 +03:00 |
Abhijit Saha
|
461db05e00
|
Merge
|
2016-03-31 14:32:13 -07:00 |