Reading a pkcs12 keystore always need storepass

Wang Weijun weijun.wang at oracle.com
Fri Mar 6 14:00:45 UTC 2015


> 在 2015年3月6日,19:49,Vincent Ryan <vincent.x.ryan at oracle.com> 写道:
> 
> If it helps then the PKCS12 implementation could be modified to use the empty password (“”)
> when a null password is supplied.

I'm not suggesting this. It's just the behavior change might break some existing codes. When I try to export a cert, I never provide any password.

Also, cacerts is still in JKS now, right? Are we going to make it pkcs12? And if so what will the password be?

--Max


More information about the security-dev mailing list