RFR [13] JDK-8168261: Use server cipher suites preference by default

Sean Mullan sean.mullan at oracle.com
Thu Mar 28 19:33:29 UTC 2019


On 3/28/19 10:50 AM, Xuelei Fan wrote:
> ping ...
> 
> Xuelei
> 
> On 3/21/2019 8:24 PM, Xuelei Fan wrote:
>> Hi,
>>
>> Could I get the update reviewed?
>>     http://cr.openjdk.java.net/~xuelei/8168261/webrev.00/
>>
>> With this update, server cipher suite preference will be used by 
>> default for TLS handshaking in the SunJSSE provider.  For more 
>> details, please refer to CSR:
>>     https://bugs.openjdk.java.net/browse/JDK-8219657

Can you explain why the change in SSLContextSpi was necessary?

Also, why do we need to override the engine methods in SSLContextImpl? 
Probably something simple, but not seeing the reason just from the diffs ...

--Sean






More information about the security-dev mailing list