[Bug 356] keytool doesn't handle SHA384withECDSA signatures

bugzilla-daemon at icedtea.classpath.org bugzilla-daemon at icedtea.classpath.org
Tue Jul 7 08:26:01 PDT 2009


http://icedtea.classpath.org/bugzilla/show_bug.cgi?id=356





------- Comment #2 from ankostis at gmail.com  2009-07-07 15:26 -------
* Needed to add a suitable for 'SHA384withECDSA' provider into 'java.security'
config-file.
* Supposedly SHA384withECDSA provided by sun.security.pkcs11.SunPKCS11
        with NSS as the native backend, as described in:
                http://blogs.sun.com/andreas/entry/the_java_pkcs_11_provider
        with the following config-file:
                name = NSS
                nssLibraryDirectory = /opt/tests/nss/lib
                nssDbMode = noDb
                attributes = compatibility
* In fedora needed to install nss-devel-3.12.3-4.fc11.i586 due to a missing NSS
lib.
* Debug java-prop: java.security.debug={all|provider|sunpkcs11} 
* But NSS does *NOT* by default compile ECC! according to:
       
http://www.mozilla.org/projects/security/pki/nss/nss-3.11/nss-3.11-algorithms.html
* BUT Testcrypto.java TestCase also fails in sun's jdk!!


-- 
Configure bugmail: http://icedtea.classpath.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.



More information about the distro-pkg-dev mailing list