RFR [12]: 8214140: Remove TLS v1 and v1.1 from SSLContext required algorithms

Sean Mullan sean.mullan at oracle.com
Wed Nov 28 19:30:34 UTC 2018


Please review this change to remove TLS v1 and v1.1 from the SE required 
algorithms for SSLContext. These TLS protocols have various weaknesses 
and are no longer recommended and are being phased out, and thus should 
be removed as requirements.

CSR: https://bugs.openjdk.java.net/browse/JDK-8214443
webrev: http://cr.openjdk.java.net/~mullan/webrevs/8214140/webrev.00/

Thanks,
Sean



More information about the security-dev mailing list