RFR [13] JDK-4919790 : Errors in alert ssl message does not reflect the actual certificate status

Sean Mullan sean.mullan at oracle.com
Thu Feb 14 19:49:38 UTC 2019


On 2/14/19 2:20 PM, Jamil Nimeh wrote:
> Whoops, forgot to look at RFC 6961.  Over there, both revoked and 
> structural failures are both supposed to yield 
> bad_certificate_status_response alerts.  I think what we have is 
> conformant with the spec.

Ok, thanks for checking, let's leave the code as is.

--Sean



More information about the security-dev mailing list