Code Review Request, 8136442 Don't tie Certificate signature algorithms to ciphersuites
Sean Mullan
sean.mullan at oracle.com
Mon Nov 30 16:59:24 UTC 2015
On 11/30/2015 11:13 AM, Xuelei Fan wrote:
>> You should change the comment above the calls to setupPrivateKeyAndChain
>> >as it still reflects the previous behavior.
> Oops, forgot the update the comment.
>
> Updated:
> http://cr.openjdk.java.net/~xuelei/8136442/webrev.01/
Looks good.
>
>> >Also, should this change only be applicable to TLS 1.2?
>> >
> TLS 1.2 updates the spec (RFC 4279). The update can be applied to TLS
> 1.0 and 1.1, too.
Ok.
--Sean
More information about the security-dev
mailing list