RFR 8076190: Customizing the generation of a PKCS12 keystore

Sean Mullan sean.mullan at oracle.com
Fri Dec 14 21:09:53 UTC 2018


On 12/12/18 10:57 AM, Weijun Wang wrote:
> Thanks. Will you please also take a look at the release note athttps://bugs.openjdk.java.net/browse/JDK-8215293?

I'm not sure about including the second sentence: "In particular, the 
algorithm for certificate protection and MacData can be set to "NONE" so 
that a PKCS #12 keystore that only contains certificates does not 
require a password."

I would probably remove this sentence and leave specific details and use 
cases like that to the programming guides.

--Sean



More information about the security-dev mailing list