RFR: 8371688: Unexpected behavior for jdk.tls.client.cipherSuites and jdk.tls.server.cipherSuites system properties [v3]

Artur Barashev abarashev at openjdk.org
Wed Nov 26 21:57:24 UTC 2025


> The jdk.tls.client.cipherSuites and jdk.tls.server.cipherSuites system properties allow a custom set of cipher suites to be used for the default JDK SSLContext. If such properties specify cipher suites not supported by the JDK, then the JDK falls back to using the default cipher suite list (as if no property was specified). This seems like unexpected behavior.

Artur Barashev has updated the pull request incrementally with one additional commit since the last revision:

  Correct test description

-------------

Changes:
  - all: https://git.openjdk.org/jdk/pull/28499/files
  - new: https://git.openjdk.org/jdk/pull/28499/files/ea85da2e..e60a8581

Webrevs:
 - full: https://webrevs.openjdk.org/?repo=jdk&pr=28499&range=02
 - incr: https://webrevs.openjdk.org/?repo=jdk&pr=28499&range=01-02

  Stats: 2 lines in 1 file changed: 1 ins; 0 del; 1 mod
  Patch: https://git.openjdk.org/jdk/pull/28499.diff
  Fetch: git fetch https://git.openjdk.org/jdk.git pull/28499/head:pull/28499

PR: https://git.openjdk.org/jdk/pull/28499


More information about the security-dev mailing list