Code Review Request of JDK-8157035 Use stronger algorithms and keys for JSSE testing

Wang Weijun at
Tue May 17 03:50:37 UTC 2016

You mentioned hacked keytool. So the X.509 v3 certs cannot be used?


> On May 17, 2016, at 11:44 AM, Xuelei Fan < at> wrote:
> Update the README with more information about the stores.
> Thanks,
> Xuelei
> On 5/16/2016 10:37 PM, Xuelei Fan wrote:
>> On 5/16/2016 10:24 PM, Wang Weijun wrote:
>>>>> On May 16, 2016, at 9:34 PM, Xuelei Fan < at> wrote:
>>>>> On 5/16/2016 9:13 PM, Wang Weijun wrote:
>>>>>>> I downloaded the files and they match what you described below.
>>>>>>> Can you please added a text file describing how they are generated.
>>>>> The generation is straightforward with keytool.  May not need an
>>>>> additional text file any more.
>>> Binary files are usually not allowed in OpenJDK. If you have to include some, add some description.
>> OK.  I will add a README as follow:
>> The keystore and truststore are generated with keytool.
>> new webrev:
>> Thanks,
>> Xuelei

More information about the security-dev mailing list