[9] Request for Review: 8021804: Certpath validation fails if validity period of root cert does not include validity period of intermediate cert

Jason Uh jason.uh at oracle.com
Fri Feb 28 19:54:13 UTC 2014


Hi Sean,

Could I please get a review of this change? This fix allows a certpath 
to be validated when a certificate issued by a version 1 trusted cert 
has a validity period that doesn't fall within the validity of the 
issuer. Trust anchors whose validity do contain the issued cert's 
validity period will be prioritized above those that do not.

webrev: http://cr.openjdk.java.net/~juh/8021804/webrev.00/
bug: http://bugs.openjdk.java.net/browse/JDK-8021804

Thanks,
Jason



More information about the security-dev mailing list