RFR: 8241306: Add SignatureMethodParameterSpec subclass for RSASSA-PSS params [v3]

Weijun Wang weijun at openjdk.java.net
Thu Apr 1 13:32:47 UTC 2021


> This enhancement contains the following code changes:
> 
> 1. Create a new public API `javax/xml/crypto/dsig/spec/RSAPSSParameterSpec` and remove the internal one.
> 2. Update marshaling and unmarshaling code inside `DOMRSAPSSSignatureMethod` so it understands extra fields in `PSSParameterSpec` and is aware of the defaults in both directions.
> 3. Update `DOMSignedInfo` so that secure validation can restrict `DigestMethod` used inside `RSAPSSParameterSpec`
> 4. Tests

Weijun Wang has updated the pull request incrementally with one additional commit since the last revision:

  spec word change, no hashCode and equals, test change

-------------

Changes:
  - all: https://git.openjdk.java.net/jdk/pull/3181/files
  - new: https://git.openjdk.java.net/jdk/pull/3181/files/211c491c..5b88fff4

Webrevs:
 - full: https://webrevs.openjdk.java.net/?repo=jdk&pr=3181&range=02
 - incr: https://webrevs.openjdk.java.net/?repo=jdk&pr=3181&range=01-02

  Stats: 69 lines in 5 files changed: 18 ins; 38 del; 13 mod
  Patch: https://git.openjdk.java.net/jdk/pull/3181.diff
  Fetch: git fetch https://git.openjdk.java.net/jdk pull/3181/head:pull/3181

PR: https://git.openjdk.java.net/jdk/pull/3181


More information about the security-dev mailing list