[jdk11u-dev] RFR: 8296631: NSS tests failing on OL9 linux-aarch64 hosts [v4]
Andrew Haley
aph at openjdk.org
Wed Nov 27 11:31:53 UTC 2024
On Thu, 7 Nov 2024 13:13:10 GMT, Taizo Kurashige <duke at openjdk.org> wrote:
>> Hi,
>>
>> This is a backport of JDK-8296631: NSS tests failing on OL9 linux-aarch64 hosts
>>
>> Original patch does not apply cleanly for the following reasons:
>>
>> ・Fix to getOsMap() in test/jdk/sun/security/pkcs11/PKCS11Test.java can not be applied since getOsMap() was removed in https://bugs.openjdk.org/browse/JDK-8331700.
>> ・Fix to test/jdk/sun/security/pkcs11/tls/tls12 can not be applied since test/jdk/sun/security/pkcs11/tls/tls12 is an enhancement added in [https://bugs.openjdk.org/browse/JDK-8220753](https://bugs.openjdk.org/browse/JDK-8220753%28jdk13%29) (jdk13).
>> ・pkcs11/fips/ClientJSSEServerJSSE.java and pkcs11/fips/TrustManagerTest.java fail if I run the pkcs11 tests without the fix to test/jdk/sun/security/pkcs11/fips/. This is because cert9.db, key4.db, and pkcs11.txt, which are required to run the tests using sqlite, do not exist in test/jdk/sun/security/pkcs11/fips. test/jdk/sun/security/pkcs11/fips was removed in https://bugs.openjdk.org/browse/JDK-8217835 (jdk13), so the original patch does not fix test/jdk/sun/security/pkcs11/fips/. I added the database files to test/jdk/sun/security/pkcs11/fips so that pkcs11/fips/ClientJSSEServerJSSE.java and pkcs11/fips/TrustManagerTest.java can run tests using sqlite and pass.
>>
>> Testing: jdk/sun/security/pkcs11 tests on RHEL9, GHA testing
>>
>> Thanks.
>
> Taizo Kurashige has updated the pull request incrementally with one additional commit since the last revision:
>
> Replace pkcs11/fips/key4.db and pkcs11.txt
What do you see?
$ pwd
/local/jdk11u-dev/test/jdk/sun/security/pkcs11/fips
$ /usr/lib64/nss/unsupported-tools/dbtool -d .
dbdir selected is .
CertDB:
KeyDB:
-------------
PR Comment: https://git.openjdk.org/jdk11u-dev/pull/2955#issuecomment-2503633598
More information about the jdk-updates-dev
mailing list