RFR: 8368514: TLS stateless session ticket decryption fails on some providers [v2]

Artur Barashev abarashev at openjdk.org
Thu Sep 25 16:17:42 UTC 2025


On Thu, 25 Sep 2025 16:11:56 GMT, Artur Barashev <abarashev at openjdk.org> wrote:

>> Daniel Jeliński has updated the pull request incrementally with four additional commits since the last revision:
>> 
>>  - Add explanation for getOutputSize
>>  - Remove references to TLS 1.2 from class names and paths
>>  - Explain why stateless resumption needs to be disabled with TLS 1.2
>>  - Update test comment
>
> LGTM

> Thanks @artur-oracle @valeriepeng for the reviews. I added more comments and renamed the test to stop referring to TLS 1.2. Let me know if that addresses your concerns.

Thanks for adding more comments and filing JDK-8368669!

-------------

PR Comment: https://git.openjdk.org/jdk/pull/27463#issuecomment-3334928316


More information about the security-dev mailing list