RFR: 8275082: Update XML Security for Java to 2.3.0 [v2]

Sean Mullan mullan at openjdk.java.net
Mon Dec 6 17:12:11 UTC 2021


On Fri, 3 Dec 2021 15:24:54 GMT, Weijun Wang <weijun at openjdk.org> wrote:

>> Import Apache Santuario 2.3.0 without the secure validation changes since in OpenJDK we are using the `jdk.xml.dsig.secureValidationPolicy` security property for XML Signature secure validation protection.
>> 
>> Two commits are pushed:
>> 
>> - 2.3.0: Import 2.3.0 code changes
>> - revert: revert the Santuario secure validation changes
>
> Weijun Wang has updated the pull request incrementally with one additional commit since the last revision:
> 
>   update comment

Marked as reviewed by mullan (Reviewer).

-------------

PR: https://git.openjdk.java.net/jdk/pull/6644


More information about the security-dev mailing list