[Bug 3751] New: [IcedTea11] Support secp256k1 in the default set of curves
    bugzilla-daemon at icedtea.classpath.org 
    bugzilla-daemon at icedtea.classpath.org
       
    Sat Aug 24 03:56:36 UTC 2019
    
    
  
https://icedtea.classpath.org/bugzilla/show_bug.cgi?id=3751
            Bug ID: 3751
           Summary: [IcedTea11] Support secp256k1 in the default set of
                    curves
           Product: IcedTea
           Version: 6.x-hg
          Hardware: all
                OS: All
            Status: NEW
          Severity: enhancement
          Priority: P5
         Component: IcedTea
          Assignee: gnu.andrew at redhat.com
          Reporter: gnu.andrew at redhat.com
                CC: unassigned at icedtea.classpath.org
Now that we no longer link SunEC against NSS (bug 3681), we can potentially
support more curves. secp256k1 is within the restricted set supported by
OpenSSL on RHEL:
OpenSSL> version 
OpenSSL 1.0.2k-fips  26 Jan 2017
OpenSSL> ecparam -list_curves
  secp256k1 : SECG curve over a 256 bit prime field
  secp384r1 : NIST/SECG curve over a 384 bit prime field
  secp521r1 : NIST/SECG curve over a 521 bit prime field
  prime256v1: X9.62/SECG curve over a 256 bit prime field
so we should match this.
-- 
You are receiving this mail because:
You are on the CC list for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.openjdk.java.net/pipermail/distro-pkg-dev/attachments/20190824/d7327a77/attachment.html>
    
    
More information about the distro-pkg-dev
mailing list