[jdk13u-dev] RFR: 8233228: Disable weak named curves by default in TLS, CertPath, and Signed JAR
Sergey Chernyshev
github.com+6394632+sercher at openjdk.java.net
Thu Nov 26 16:06:04 UTC 2020
Hello,
I would like to create backports of 8233228 and 8172404 in 13u. The backports are already in production in 11u.
The proposed 8233228 patch is exactly the same as 15u version, except for Hunk #9 at line 258(299):
[https://github.com/openjdk/jdk13u-dev/commit/edec2fc6d79678111f97fa9da81d3bc1d2010538#diff-499d805909084ecc06c50b4706f8a2b3ec70ab9aaf55d54a6156c518f85f1bd6](https://github.com/openjdk/jdk13u-dev/commit/edec2fc6d79678111f97fa9da81d3bc1d2010538#diff-499d805909084ecc06c50b4706f8a2b3ec70ab9aaf55d54a6156c518f85f1bd6)
in which the 8244479 is already applied. In comparison, the 15u version applies 8244479 on top of 8233228, so the changes are in reverse order. Otherwise there are no code / logic changes in the code.
The further step would be to submit the 8172404 backport in the subsequent PR, in which the 15u patch applies cleanly in 13u on top of the proposed 8233228.
Thank you.
Best regards,
Sergey Chernyshev
BellSoft
-------------
Commit messages:
- 8233228: Disable weak named curves by default in TLS, CertPath, and Signed JAR
Changes: https://git.openjdk.java.net/jdk13u-dev/pull/32/files
Webrev: https://webrevs.openjdk.java.net/?repo=jdk13u-dev&pr=32&range=00
Issue: https://bugs.openjdk.java.net/browse/JDK-8233228
Stats: 195 lines in 7 files changed: 154 ins; 7 del; 34 mod
Patch: https://git.openjdk.java.net/jdk13u-dev/pull/32.diff
Fetch: git fetch https://git.openjdk.java.net/jdk13u-dev pull/32/head:pull/32
PR: https://git.openjdk.java.net/jdk13u-dev/pull/32
More information about the jdk-updates-dev
mailing list