Code Review Request, 8136442 Don't tie Certificate signature algorithms to ciphersuites

Sean Mullan sean.mullan at oracle.com
Mon Nov 30 16:59:24 UTC 2015


On 11/30/2015 11:13 AM, Xuelei Fan wrote:
>> You should change the comment above the calls to setupPrivateKeyAndChain
>> >as it still reflects the previous behavior.
> Oops, forgot the update the comment.
>
> Updated:
>     http://cr.openjdk.java.net/~xuelei/8136442/webrev.01/

Looks good.

>
>> >Also, should this change only be applicable to TLS 1.2?
>> >
> TLS 1.2 updates the spec (RFC 4279). The update can be applied to TLS
> 1.0 and 1.1, too.

Ok.

--Sean



More information about the security-dev mailing list