<html>
  <head>
    <meta content="text/html; charset=utf-8" http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <p>Hi Xin, <br>
    </p>
    <p>looks like a reasonable backport candidate for jdk8u. I guess the
      changeset will apply cleanly once you correct the paths.</p>
    <p>You should have no problem with a push request on jdk8u-dev :
      <a class="moz-txt-link-freetext" href="http://openjdk.java.net/projects/jdk8u/approval-template.html">http://openjdk.java.net/projects/jdk8u/approval-template.html</a></p>
    <pre class="moz-signature" cols="72">Regards,
Sean.</pre>
    <div class="moz-cite-prefix">On 18/10/18 23:34, Liu, Xin wrote:<br>
    </div>
    <blockquote
      cite="mid:208E302C-C247-40EC-B18D-4FC0168B82A0@amazon.com"
      type="cite">
      <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
      <meta name="Generator" content="Microsoft Word 15 (filtered
        medium)">
      <style><!--
/* Font Definitions */
@font-face
        {font-family:Helvetica;
        panose-1:0 0 0 0 0 0 0 0 0 0;}
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:DengXian;
        panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
        {font-family:"\@DengXian";
        panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
        {font-family:"Helvetica Neue";
        panose-1:2 0 5 3 0 0 0 2 0 4;}
@font-face
        {font-family:Menlo;
        panose-1:2 11 6 9 3 8 4 2 2 4;}
@font-face
        {font-family:-webkit-standard;
        panose-1:2 11 6 4 2 2 2 2 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:#0563C1;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:#954F72;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
span.apple-converted-space
        {mso-style-name:apple-converted-space;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-family:"Calibri",sans-serif;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
--></style>
      <div class="WordSection1">
        <p class="MsoNormal"><span style="color:black">Hi, Security
            developers,<span class="apple-converted-space"> </span><o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black"> <o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black">We can’t pass the following test on
            our platform for OpenJDK8.<o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black"> <o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black">Test:<span
              class="apple-converted-space"> </span><a
              moz-do-not-send="true"
href="http://hg.openjdk.java.net/jdk8u/jdk8u-dev/jdk/file/4a782529d712/test/sun/security/pkcs11/rsa/TestKeyPairGenerator.java#l106"><span
                style="color:#954F72">http://hg.openjdk.java.net/jdk8u/jdk8u-dev/jdk/file/4a782529d712/test/sun/security/pkcs11/rsa/TestKeyPairGenerator.java#l106</span></a><o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black">Error Message:<o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">Generating 512 bit keypair...</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">STDERR:</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">java.security.ProviderException:
            sun.security.pkcs11.wrapper.PKCS11Exception:
            CKR_ARGUMENTS_BAD</span><span style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
sun.security.pkcs11.P11KeyPairGenerator.generateKeyPair(P11KeyPairGenerator.java:424)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
java.security.KeyPairGenerator$Delegate.generateKeyPair(KeyPairGenerator.java:697)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            TestKeyPairGenerator.main(TestKeyPairGenerator.java:119)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            PKCS11Test.premain(PKCS11Test.java:88)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            PKCS11Test.testNSS(PKCS11Test.java:403)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            PKCS11Test.main(PKCS11Test.java:98)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            TestKeyPairGenerator.main(TestKeyPairGenerator.java:97)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            java.lang.reflect.Method.invoke(Method.java:498)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
com.sun.javatest.regtest.agent.MainWrapper$MainThread.run(MainWrapper.java:127)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            java.lang.Thread.run(Thread.java:748)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">Caused by:
            sun.security.pkcs11.wrapper.PKCS11Exception:
            CKR_ARGUMENTS_BAD</span><span style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
            sun.security.pkcs11.wrapper.PKCS11.C_GenerateKeyPair(Native
            Method)</span><span style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    at
sun.security.pkcs11.P11KeyPairGenerator.generateKeyPair(P11KeyPairGenerator.java:416)</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-bottom:6.75pt;line-height:13.5pt;background:whitesmoke;word-break:break-all;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:8.5pt;font-family:Menlo;color:#333333;border:none
            windowtext 1.0pt;padding:0in">    ... 12 more</span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black"> <o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black"> <o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black">We believe the problem is caused by
            the NSS standard[1].<o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black">There’s a bug related to Solaris[2].
            Our platform also rejects this test for the same reason.
              Is it okay backport this patch to jdk8u?   I think it’s
            backward-compatible.<o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="font-size:10.0pt;font-family:"Helvetica
            Neue";color:#222222"><br>
            Here is difference between FIPS 186-2 and FIPS 186-4</span><span
            style="color:black"><o:p></o:p></span></p>
        <p
style="margin:0in;margin-bottom:.0001pt;background:#F9F9F9;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span style="font-size:10.0pt;font-family:"Helvetica
            Neue";color:#222222">RSA: restrict n size to 1024 2048
            3072, restrict e to 2^16+1 to 2^256−1, and specify RSA
            private key generation in detail with several options. <strong><span
                style="font-family:"Helvetica Neue"">This
                prohibits one traditionally popular e namely 3;</span></strong> F4
            (65537) is allowed and IME more popular anyway.[1]</span><span
style="font-family:"-webkit-standard",serif;color:black"><o:p></o:p></span></p>
        <p
          style="margin-bottom:6.75pt;background:#F9F9F9;font-variant-caps:
          normal;text-align:start;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;font-variant-ligatures:
          normal;orphans: 2;widows: 2;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span style="font-size:10.0pt;font-family:"Helvetica
            Neue";color:#222222">References:</span><span
            style="font-family:"-webkit-standard",serif;color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-left:18.75pt;text-indent:-.25in;line-height:13.5pt;background:#F9F9F9;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span style="color:black">1.</span><span
            style="font-size:7.0pt;font-family:"Times New
            Roman",serif;color:black">     <span
              class="apple-converted-space"> </span></span><span
            style="font-size:10.0pt;font-family:"Helvetica
            Neue";color:#222222"><a moz-do-not-send="true"
href="https://crypto.stackexchange.com/questions/35388/what-is-the-major-difference-between-fips-186-2-and-fips-186-4"><span
                style="color:#0088CC">https://crypto.stackexchange.com/questions/35388/what-is-the-major-difference-between-fips-186-2-and-fips-186-4</span></a></span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal"
style="margin-left:18.75pt;text-indent:-.25in;line-height:13.5pt;background:#F9F9F9;font-variant-caps:
          normal;orphans: auto;text-align:start;widows:
          auto;-webkit-text-size-adjust: auto;-webkit-text-stroke-width:
          0px;background-position:initial
          initial;background-repeat:initial initial;word-spacing:0px">
          <span
            style="font-size:10.0pt;font-family:Helvetica;color:black">2.    <a
              moz-do-not-send="true"
              href="https://bugs.openjdk.java.net/browse/JDK-8129560"><span
                style="color:#954F72">https://bugs.openjdk.java.net/browse/JDK-8129560</span></a></span><span
            style="color:black"><o:p></o:p></span></p>
        <p class="MsoNormal" style="font-variant-caps: normal;orphans:
          auto;text-align:start;widows: auto;-webkit-text-size-adjust:
          auto;-webkit-text-stroke-width: 0px;word-spacing:0px">
          <span style="color:black"> <o:p></o:p></span></p>
        <p class="MsoNormal"><span style="font-size:11.0pt"><o:p> </o:p></span></p>
      </div>
    </blockquote>
    <br>
  </body>
</html>