[14] RFR JDK-8176837 "SunPKCS11 provider needs to check more details on PKCS11 Mechanism"

Valerie Peng valerie.peng at oracle.com
Thu Sep 19 00:56:28 UTC 2019




Can someone help reviewing this fix? AFAIK, only S11.4 have such mechanisms, e.g. RC4 which only does decryption but not encryption. 
But the checks seems reasonable to apply to all PKCS11 libraries when querying mechanisms. 

No new regression test needed as this is already caught by running existing regression tests on S11.4. 



Bug: https://bugs.openjdk.java.net/browse/JDK-8176837 
Webrev: http://cr.openjdk.java.net/~valeriep/8176837/webrev.00/ 


Thanks, 
Valerie 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.openjdk.org/pipermail/security-dev/attachments/20190918/e5a7dbae/attachment.htm>


More information about the security-dev mailing list