RFR: 8353738: Update TLS unit tests to not use certificates with MD5 signatures [v7]
Matthew Donovan
mdonovan at openjdk.org
Mon Nov 24 17:22:39 UTC 2025
> This PR updates tests that were using MD5 certificates. For most of the tests, I added test cases for TLSv1.2/MD5withRSA and TLSv1.3/SHA256withRSA.
Matthew Donovan has updated the pull request with a new target base due to a merge or a rebase. The incremental webrev excludes the unrelated changes brought in by the merge/rebase. The pull request contains 13 additional commits since the last revision:
- Updated IPAddressDNSIdentities and confirmed test fails for correct reason
- Merge branch 'master' into update-md5-certs
- Updated SAN methods in CertificateBuilder to take multiple names
- Merge branch 'master' into update-md5-certs
- removed IPIdentitites.java because it's identical to IPAddressIPIdenties; added IPv6 SAN ext
- removed unused keystore files, fixed certificate chain
- Merge branch 'master' into update-md5-certs
- changed line wrapping
- removed unnecessary comment and made getSSLContext(...) private
- changed tests to use SecurityUtils.removeDisabled*Algs methods
- ... and 3 more: https://git.openjdk.org/jdk/compare/cd9e5e5a...ea9c2dce
-------------
Changes:
- all: https://git.openjdk.org/jdk/pull/27342/files
- new: https://git.openjdk.org/jdk/pull/27342/files/6579bc79..ea9c2dce
Webrevs:
- full: https://webrevs.openjdk.org/?repo=jdk&pr=27342&range=06
- incr: https://webrevs.openjdk.org/?repo=jdk&pr=27342&range=05-06
Stats: 1138 lines in 16 files changed: 412 ins; 630 del; 96 mod
Patch: https://git.openjdk.org/jdk/pull/27342.diff
Fetch: git fetch https://git.openjdk.org/jdk.git pull/27342/head:pull/27342
PR: https://git.openjdk.org/jdk/pull/27342
More information about the net-dev
mailing list