TLS 1.2 signature_algorithms extension processing
Xuelei Fan
xuelei.fan at oracle.com
Fri Nov 23 13:58:57 UTC 2012
On 11/23/2012 1:59 AM, Florian Weimer wrote:
> Is the extension actually being processed?
Yes.
> sun.security.ssl.HandshakeHash.setCertificateVerifyAlg(String) appears
> to have no effect because the cvAlg member is never read.
>
Need to clean up the code. We do not actually use the above code to
verify CertificateVerify message for TLS 1.2.
Xuelei
More information about the security-dev
mailing list