RFR: 8259401: Add checking to jarsigner to warn weak algorithms used in signer’s cert chain [v2]

Hai-May Chao hchao at openjdk.java.net
Wed Jan 13 22:20:08 UTC 2021


On Wed, 13 Jan 2021 20:26:17 GMT, Sean Mullan <mullan at openjdk.org> wrote:

>> Hai-May Chao has updated the pull request incrementally with one additional commit since the last revision:
>> 
>>   No warning for trusted cert's SHA1, and added debug output to test
>
> Marked as reviewed by mullan (Reviewer).

Thanks for the review, Max. The comment about trusted cert's sigalg checking has been removed.

-------------

PR: https://git.openjdk.java.net/jdk/pull/2042



More information about the security-dev mailing list