Query - Does JSSE library implement the Ciphers or Algorithms of a SSL protocol ?

Jim Manico jim.manico at owasp.org
Wed Jun 1 02:42:12 UTC 2016


I think this is the right answer.

From
https://stackoverflow.com/questions/27323858/java-6-ecdhe-cipher-suite-support

The SSL/TLS implementation "JSSE" in Java 1.6 and later supports ECDHE
suites *IF there is an available (JCE) provider* for needed ECC
primitives. *Java 1.6 OOTB does NOT* include such an ECC provider, but
you can add one. *Java 7 and 8 do* include SunECC provider.

- Jim


On 5/29/16 8:02 PM, Ayaskant Swain wrote:
> Hi,
>
> Can anyone please help me know about this - Does JSSE library
> implement the Ciphers or Algorithms of a SSL protocol ? I see the
> jsse.jar library shipped with the JDK. I read the the Oracle document
> about JSSE
> - http://docs.oracle.com/javase/8/docs/technotes/guides/security/jsse/JSSERefGuide.html#Introduction
>
> So my question is - does the JSSE implement the Ciphers or Algorithms
> that are used for a successful SSL handshake , server authentication,
> data integrity & data confidentiality (Application data encryption).
>
> Example of cipher suites - *TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
> or **TLS_DHE_RSA_WITH_AES_128_GCM_SHA256*
> *
> *
> So is the coding of the above ciphers have been done in the JSSE library?
>
> Thanks
> Ayaskant
> Bangalore

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.openjdk.org/pipermail/security-dev/attachments/20160531/60e81633/attachment.htm>


More information about the security-dev mailing list