git: openjdk/jdk21u-dev: master: 8311644: Server should not send bad_certificate alert when the client does not send any certificates

Goetz Lindenmaier goetz at openjdk.org
Wed Aug 13 07:45:01 UTC 2025


Changeset: af098597
Branch: master
Author:    Goetz Lindenmaier <goetz at openjdk.org>
Date:      2025-08-13 07:44:20 +0000
URL:       https://git.openjdk.org/jdk21u-dev/commit/af0985974de246af6610faa90d7c1af5ec5addc3

8311644: Server should not send bad_certificate alert when the client does not send any certificates

Backport-of: f62b5789add23adda2634a1cfb80f48b4387be74

! src/java.base/share/classes/sun/security/ssl/Alert.java
! src/java.base/share/classes/sun/security/ssl/CertificateMessage.java
+ test/jdk/javax/net/ssl/SSLSession/CertMsgCheck.java
! test/jdk/javax/net/ssl/SSLSession/CheckSessionContext.java
! test/jdk/javax/net/ssl/templates/TLSBase.java
! test/jdk/sun/security/ssl/DHKeyExchange/LegacyDHEKeyExchange.java
! test/jdk/sun/security/ssl/SignatureScheme/SigAlgosExtTestWithTLS12.java
! test/jdk/sun/security/ssl/SignatureScheme/SigAlgosExtTestWithTLS13.java



More information about the jdk-updates-changes mailing list