<html xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
        {font-family:Helvetica;
        panose-1:0 0 0 0 0 0 0 0 0 0;}
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:DengXian;
        panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
        {font-family:"\@DengXian";
        panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
        {font-family:"Helvetica Neue";
        panose-1:2 0 5 3 0 0 0 2 0 4;}
@font-face
        {font-family:Menlo;
        panose-1:2 11 6 9 3 8 4 2 2 4;}
@font-face
        {font-family:-webkit-standard;
        panose-1:2 11 6 4 2 2 2 2 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:#0563C1;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:#954F72;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
span.apple-converted-space
        {mso-style-name:apple-converted-space;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-family:"Calibri",sans-serif;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
--></style>
</head>
<body lang="EN-US" link="#0563C1" vlink="#954F72">
<div class="WordSection1">
<p class="MsoNormal"><span style="color:black">Hi, Security developers,<span class="apple-converted-space"> </span><o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black"> <o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black">We can’t pass the following test on our platform for OpenJDK8.<o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black"> <o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black">Test:<span class="apple-converted-space"> </span><a href="http://hg.openjdk.java.net/jdk8u/jdk8u-dev/jdk/file/4a782529d712/test/sun/security/pkcs11/rsa/TestKeyPairGenerator.java#l106"><span style="color:#954F72">http://hg.openjdk.java.net/jdk8u/jdk8u-dev/jdk/file/4a782529d712/test/sun/security/pkcs11/rsa/TestKeyPairGenerator.java#l106</span></a><o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black">Error Message:<o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">Generating 512 bit keypair...</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">STDERR:</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">java.security.ProviderException: sun.security.pkcs11.wrapper.PKCS11Exception: CKR_ARGUMENTS_BAD</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.security.pkcs11.P11KeyPairGenerator.generateKeyPair(P11KeyPairGenerator.java:424)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at java.security.KeyPairGenerator$Delegate.generateKeyPair(KeyPairGenerator.java:697)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at TestKeyPairGenerator.main(TestKeyPairGenerator.java:119)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at PKCS11Test.premain(PKCS11Test.java:88)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at PKCS11Test.testNSS(PKCS11Test.java:403)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at PKCS11Test.main(PKCS11Test.java:98)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at TestKeyPairGenerator.main(TestKeyPairGenerator.java:97)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at java.lang.reflect.Method.invoke(Method.java:498)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at com.sun.javatest.regtest.agent.MainWrapper$MainThread.run(MainWrapper.java:127)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at java.lang.Thread.run(Thread.java:748)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">Caused by: sun.security.pkcs11.wrapper.PKCS11Exception: CKR_ARGUMENTS_BAD</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.security.pkcs11.wrapper.PKCS11.C_GenerateKeyPair(Native Method)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    at sun.security.pkcs11.P11KeyPairGenerator.generateKeyPair(P11KeyPairGenerator.java:416)</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none windowtext 1.0pt;padding:0in">    ... 12 more</span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black"> <o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black"> <o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black">We believe the problem is caused by the NSS standard[1].<o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black">There’s a bug related to Solaris[2]. Our platform also rejects this test for the same reason.   Is it okay backport this patch to jdk8u?   I think it’s backward-compatible.<o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="font-size:10.0pt;font-family:"Helvetica Neue";color:#222222"><br>
Here is difference between FIPS 186-2 and FIPS 186-4</span><span style="color:black"><o:p></o:p></span></p>
<p style="margin:0in;margin-bottom:.0001pt;background:#F9F9F9;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:10.0pt;font-family:"Helvetica Neue";color:#222222">RSA: restrict n size to 1024 2048 3072, restrict e to 2^16+1 to 2^256−1, and specify RSA private key generation in detail with several options. <strong><span style="font-family:"Helvetica Neue"">This
 prohibits one traditionally popular e namely 3;</span></strong> F4 (65537) is allowed and IME more popular anyway.[1]</span><span style="font-family:"-webkit-standard",serif;color:black"><o:p></o:p></span></p>
<p style="margin-bottom:6.75pt;background:#F9F9F9;font-variant-caps: normal;text-align:start;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;font-variant-ligatures: normal;orphans: 2;widows: 2;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:10.0pt;font-family:"Helvetica Neue";color:#222222">References:</span><span style="font-family:"-webkit-standard",serif;color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:18.75pt;text-indent:-.25in;line-height:13.5pt;background:#F9F9F9;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="color:black">1.</span><span style="font-size:7.0pt;font-family:"Times New Roman",serif;color:black">     <span class="apple-converted-space"> </span></span><span style="font-size:10.0pt;font-family:"Helvetica Neue";color:#222222"><a href="https://crypto.stackexchange.com/questions/35388/what-is-the-major-difference-between-fips-186-2-and-fips-186-4"><span style="color:#0088CC">https://crypto.stackexchange.com/questions/35388/what-is-the-major-difference-between-fips-186-2-and-fips-186-4</span></a></span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:18.75pt;text-indent:-.25in;line-height:13.5pt;background:#F9F9F9;font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;background-position:initial initial;background-repeat:initial initial;word-spacing:0px">
<span style="font-size:10.0pt;font-family:Helvetica;color:black">2.    <a href="https://bugs.openjdk.java.net/browse/JDK-8129560"><span style="color:#954F72">https://bugs.openjdk.java.net/browse/JDK-8129560</span></a></span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal" style="font-variant-caps: normal;orphans: auto;text-align:start;widows: auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
<span style="color:black"> <o:p></o:p></span></p>
<p class="MsoNormal"><span style="font-size:11.0pt"><o:p> </o:p></span></p>
</div>
</body>
</html>