Code Review Request, JDK-8172869 4096 is not supported yet for the DH Parameter Generator

Anthony Scarpino anthony.scarpino at
Tue Jan 24 19:46:34 UTC 2017

On 01/24/2017 11:24 AM, Xuelei Fan wrote:
> Hi,
> Please review this spec documentation update:
> In the specification, 4096
> bits DH parameter generator is specified as a required feature.
> However, the 4096 bits DH parameter generator is not supported yet in
> JDK.  Although the 4096 bits DH key generation is supported, but it uses
> the predefined DH parameters.
> This update removes the 4096 bits DH parameter generator requirement
> from the specification.
> Thanks,
> Xuelei

The change looks fine, but does it make sense to mention that 4k bit DH 
uses predefined parameters in the this section or somewhere else?


More information about the security-dev mailing list