RFR: 8377102: cacerts jlink plugin

Alan Bateman alanb at openjdk.org
Tue Feb 24 07:31:57 UTC 2026


On Fri, 13 Feb 2026 18:53:38 GMT, Sean Mullan <mullan at openjdk.org> wrote:

> However, I am curious if there is a need to support adding additional root certs (ex: by specifying a PEM file), or if the developer/admin should be required to import that into the cacerts keystore (before or after).

It might be helpful to sketch out how this might look and whether it would likely mean a new plugin or extending the current cacerts plugin. That would help with deciding on the discoverability and supportability of the current proposal.

-------------

PR Comment: https://git.openjdk.org/jdk/pull/29700#issuecomment-3949763366



More information about the security-dev mailing list