<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<p><br>
</p>
<p>Yes, latest webrev looks fine to me.</p>
Thanks for the update,<br>
Valerie<br>
<div class="moz-cite-prefix">On 9/26/2019 2:30 AM, Baesken, Matthias
wrote:<br>
</div>
<blockquote type="cite"
cite="mid:AM6PR02MB5078BFF4811098A7F90744B293860@AM6PR02MB5078.eurprd02.prod.outlook.com">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<meta name="Generator" content="Microsoft Word 15 (filtered
medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:Wingdings;
panose-1:5 0 0 0 0 0 0 0 0 0;}
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
{font-family:"Segoe UI Emoji";
panose-1:2 11 5 2 4 2 4 2 2 3;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0cm;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;
mso-fareast-language:EN-US;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
pre
{mso-style-priority:99;
mso-style-link:"HTML Preformatted Char";
margin:0cm;
margin-bottom:.0001pt;
font-size:10.0pt;
font-family:"Courier New";}
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph
{mso-style-priority:34;
margin-top:0cm;
margin-right:0cm;
margin-bottom:0cm;
margin-left:36.0pt;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;
mso-fareast-language:EN-US;}
p.msonormal0, li.msonormal0, div.msonormal0
{mso-style-name:msonormal;
mso-margin-top-alt:auto;
margin-right:0cm;
mso-margin-bottom-alt:auto;
margin-left:0cm;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
color:black;}
span.EmailStyle19
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle20
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle21
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle22
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle23
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle24
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle25
{mso-style-type:personal;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.EmailStyle28
{mso-style-type:personal-reply;
font-family:"Calibri",sans-serif;
color:windowtext;}
span.HTMLPreformattedChar
{mso-style-name:"HTML Preformatted Char";
mso-style-priority:99;
mso-style-link:"HTML Preformatted";
font-family:"Courier New";}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:612.0pt 792.0pt;
margin:70.85pt 70.85pt 2.0cm 70.85pt;}
div.WordSection1
{page:WordSection1;}
/* List Definitions */
@list l0
{mso-list-id:356929128;
mso-list-template-ids:1698749730;}
@list l0:level1
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:36.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level2
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:72.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level3
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:108.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level4
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:144.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level5
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:180.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level6
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:216.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level7
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:252.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level8
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:288.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l0:level9
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:324.0pt;
mso-level-number-position:left;
text-indent:-18.0pt;
mso-ansi-font-size:10.0pt;
font-family:Symbol;}
@list l1
{mso-list-id:1768505050;
mso-list-type:hybrid;
mso-list-template-ids:-1314093374 1413907438 67567619 67567621 67567617 67567619 67567621 67567617 67567619 67567621;}
@list l1:level1
{mso-level-start-at:0;
mso-level-number-format:bullet;
mso-level-text:-;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:"Calibri",sans-serif;
mso-fareast-font-family:Calibri;}
@list l1:level2
{mso-level-number-format:bullet;
mso-level-text:o;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:"Courier New";}
@list l1:level3
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:Wingdings;}
@list l1:level4
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:Symbol;}
@list l1:level5
{mso-level-number-format:bullet;
mso-level-text:o;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:"Courier New";}
@list l1:level6
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:Wingdings;}
@list l1:level7
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:Symbol;}
@list l1:level8
{mso-level-number-format:bullet;
mso-level-text:o;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:"Courier New";}
@list l1:level9
{mso-level-number-format:bullet;
mso-level-text:;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-18.0pt;
font-family:Wingdings;}
ol
{margin-bottom:0cm;}
ul
{margin-bottom:0cm;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
<div class="WordSection1">
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US">Hi
Christoph, you are right - I should better use
getVersionStr() , I’ll replace it .<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US">Valerie
are you fine with the latest webrev ?<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US">Best
regards, Matthias<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext" lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
<div style="border:none;border-left:solid blue 1.5pt;padding:0cm
0cm 0cm 4.0pt">
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="color:windowtext;mso-fareast-language:DE"
lang="EN-US">From:</span></b><span
style="color:windowtext;mso-fareast-language:DE"
lang="EN-US"> Langer, Christoph
<a class="moz-txt-link-rfc2396E" href="mailto:christoph.langer@sap.com"><christoph.langer@sap.com></a>
<br>
<b>Sent:</b> Mittwoch, 25. September 2019 16:50<br>
<b>To:</b> Baesken, Matthias
<a class="moz-txt-link-rfc2396E" href="mailto:matthias.baesken@sap.com"><matthias.baesken@sap.com></a>; Valerie Peng
<a class="moz-txt-link-rfc2396E" href="mailto:valerie.peng@oracle.com"><valerie.peng@oracle.com></a>;
<a class="moz-txt-link-abbreviated" href="mailto:security-dev@openjdk.java.net">security-dev@openjdk.java.net</a><br>
<b>Subject:</b> RE: Re: RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14<o:p></o:p></span></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><span style="color:windowtext">Hi
Matthias,<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">looks good.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">One minor thing I just recognized:
java.security.Provider::getVersion() is deprecated. Can
you please use p.getVersionStr in line 323? But no need to
see another webrev
</span><span style="font-family:"Segoe UI
Emoji",sans-serif;color:windowtext" lang="EN-US">😊</span><span
style="color:windowtext" lang="EN-US"><o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">Best regards<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">Christoph<o:p></o:p></span></p>
<p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="color:windowtext;mso-fareast-language:DE"
lang="EN-US">From:</span></b><span
style="color:windowtext;mso-fareast-language:DE"
lang="EN-US"> Baesken, Matthias <<a
href="mailto:matthias.baesken@sap.com"
moz-do-not-send="true">matthias.baesken@sap.com</a>>
<br>
<b>Sent:</b> Mittwoch, 25. September 2019 16:34<br>
<b>To:</b> Valerie Peng <<a
href="mailto:valerie.peng@oracle.com"
moz-do-not-send="true">valerie.peng@oracle.com</a>>;
<a href="mailto:security-dev@openjdk.java.net"
moz-do-not-send="true">security-dev@openjdk.java.net</a><br>
<b>Cc:</b> Langer, Christoph <<a
href="mailto:christoph.langer@sap.com"
moz-do-not-send="true">christoph.langer@sap.com</a>><br>
<b>Subject:</b> RE: Re: RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14<o:p></o:p></span></p>
</div>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">Hi Valerie / </span>
<span lang="EN-US">Christoph ,</span><span
style="color:windowtext" lang="EN-US"><o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">New webrev :<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><a
href="http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.2/"
moz-do-not-send="true"><span lang="EN-US">http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.2/</span></a><o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<ul style="margin-top:0cm" type="disc">
<li class="MsoListParagraph"
style="color:windowtext;margin-left:0cm;mso-list:l1 level1
lfo3">
<span lang="EN-US">Followed the idea of Christoph : “<span
style="color:black">One minor style nit: You could
close the else case in line 335 with “}” and then have
just one throw e;</span>”<o:p></o:p></span></li>
<li class="MsoListParagraph"
style="color:windowtext;margin-left:0cm;mso-list:l1 level1
lfo3">
<span lang="EN-US">Moved the isNSS(Provider) check in
front of the version checking and potential output<o:p></o:p></span></li>
</ul>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US">Best regards, Matthias<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:windowtext"
lang="EN-US"><o:p> </o:p></span></p>
<p class="MsoNormal" style="margin-bottom:12.0pt"><span
lang="EN-US"><o:p> </o:p></span></p>
<p><span lang="EN-US">Hi Matthias,<o:p></o:p></span></p>
<p><span lang="EN-US">The output on line 324 may report
inconsistent info - the provider in use may not be NSS but
yet you put NSS version with provider name?</span><o:p></o:p></p>
<p><span lang="EN-US">Since you are updating the code here,
how about re-org the code a bit and first check for
whether NSS provider is used then do the various
version-specific handling.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Regards,</span><o:p></o:p></p>
<p><span lang="EN-US">Valerie</span><o:p></o:p></p>
<p><o:p> </o:p></p>
<div>
<p class="MsoNormal">On 9/24/2019 5:39 AM, Langer, Christoph
wrote:<o:p></o:p></p>
</div>
<p class="MsoNormal">Hi Matthias,<o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal">looks good to me.<o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">One minor style nit:
You could close the else case in line 335 with “}” and
then have just one throw e; after the whole if else block.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Best regards</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Christoph</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="mso-fareast-language:DE" lang="EN-US">From:</span></b><span
style="mso-fareast-language:DE" lang="EN-US"> Baesken,
Matthias
<a href="mailto:matthias.baesken@sap.com"
moz-do-not-send="true"><matthias.baesken@sap.com></a>
<br>
<b>Sent:</b> Dienstag, 24. September 2019 10:30<br>
<b>To:</b> Langer, Christoph <a
href="mailto:christoph.langer@sap.com"
moz-do-not-send="true"><christoph.langer@sap.com></a>;
<a href="mailto:security-dev@openjdk.java.net"
moz-do-not-send="true">security-dev@openjdk.java.net</a><br>
<b>Cc:</b> Zeller, Arno <a
href="mailto:arno.zeller@sap.com"
moz-do-not-send="true"><arno.zeller@sap.com></a><br>
<b>Subject:</b> RE: RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14</span><o:p></o:p></p>
</div>
</div>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal">New webrev :<o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><a
href="http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.1/"
moz-do-not-send="true">http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.1/</a><o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">I adjusted the imports
and now output a warning .</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Best regards, Matthias</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="mso-fareast-language:DE" lang="EN-US">From:</span></b><span
style="mso-fareast-language:DE" lang="EN-US"> Baesken,
Matthias
<br>
<b>Sent:</b> Montag, 23. September 2019 16:07<br>
<b>To:</b> Langer, Christoph <<a
href="mailto:christoph.langer@sap.com"
moz-do-not-send="true">christoph.langer@sap.com</a>>;
<a href="mailto:security-dev@openjdk.java.net"
moz-do-not-send="true">security-dev@openjdk.java.net</a><br>
<b>Cc:</b> Zeller, Arno <<a
href="mailto:arno.zeller@sap.com"
moz-do-not-send="true">arno.zeller@sap.com</a>><br>
<b>Subject:</b> RE: RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14</span><o:p></o:p></p>
</div>
</div>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Hi Christoph, I am
okay with your suggestion to just print a message
in case that an older nss lib < 3.15 is found ;
however let’s see what others think .</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">(but for Solaris we
let the test pass when noticing old nss versions , so
I thought it might make some sense to behave on Linux in
the same way )
</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Best regards, Matthias</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="mso-fareast-language:DE" lang="EN-US">From:</span></b><span
style="mso-fareast-language:DE" lang="EN-US"> Langer,
Christoph <<a
href="mailto:christoph.langer@sap.com"
moz-do-not-send="true">christoph.langer@sap.com</a>>
<br>
<b>Sent:</b> Montag, 23. September 2019 15:53<br>
<b>To:</b> Baesken, Matthias <<a
href="mailto:matthias.baesken@sap.com"
moz-do-not-send="true">matthias.baesken@sap.com</a>>;
<a href="mailto:security-dev@openjdk.java.net"
moz-do-not-send="true">security-dev@openjdk.java.net</a><br>
<b>Cc:</b> Zeller, Arno <<a
href="mailto:arno.zeller@sap.com"
moz-do-not-send="true">arno.zeller@sap.com</a>><br>
<b>Subject:</b> RE: RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14</span><o:p></o:p></p>
</div>
</div>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal">Hi Matthias,<o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">generally I agree that
it’s a good idea to have more diagnostic output in case of
failures in this test.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">But, given that
there’s an upgrade path even on our old Linux SLES 11.3
system to a newer libnss that has a fix for the bug that
we observe, I suggest that the test should still fail with
libnss 3.14. So I suggest you only add the line</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">System.out.println("Exception
occured using " + p.getName() + " version " + ver);</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">and maybe a comment
stating that libnss 3.14 on Linux isn’t good for this
test.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">BTW, if you want to
clean up the testcase a bit, you might remove line 36,
import java.math.*; because it’s not needed. Or replace
all the imports with:</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
java.security.GeneralSecurityException;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
java.security.Provider;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
java.util.Arrays;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
javax.crypto.Cipher;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
javax.crypto.SecretKey;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
javax.crypto.spec.GCMParameterSpec;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">import
javax.crypto.spec.SecretKeySpec;</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Thanks</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Christoph</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<div>
<div style="border:none;border-top:solid #E1E1E1
1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span
style="mso-fareast-language:DE" lang="EN-US">From:</span></b><span
style="mso-fareast-language:DE" lang="EN-US"> Baesken,
Matthias <<a href="mailto:matthias.baesken@sap.com"
moz-do-not-send="true">matthias.baesken@sap.com</a>>
<br>
<b>Sent:</b> Montag, 23. September 2019 15:16<br>
<b>To:</b> <a
href="mailto:security-dev@openjdk.java.net"
moz-do-not-send="true">security-dev@openjdk.java.net</a><br>
<b>Cc:</b> Langer, Christoph <<a
href="mailto:christoph.langer@sap.com"
moz-do-not-send="true">christoph.langer@sap.com</a>>;
Zeller, Arno <<a href="mailto:arno.zeller@sap.com"
moz-do-not-send="true">arno.zeller@sap.com</a>><br>
<b>Subject:</b> RFR [XS] 8231357:
sun/security/pkcs11/Cipher/TestKATForGCM.java fails on
SLES11 using mozilla-nss-3.14</span><o:p></o:p></p>
</div>
</div>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Hello, please review
this small test related change .</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">We noticed that on
our SLES (SuSE Linux) 11 test machines, the test<br>
<br>
sun/security/pkcs11/Cipher/TestKATForGCM.java<br>
<br>
fails when older nss versions are used on the system ,
especially nss 3.14 .</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"><br>
The used package is named mozilla-nss-3.14 .<br>
Upgrading to newer versions (e.g. 3.20) makes the test
succeed , so it might be helpful<br>
to add a check in the test like it is done already for old
nss versions on Solaris.</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">(nss 3.15 contains a
couple of AES cipher with GCM related fixes, those
might be the ones needed to run the test successfully ).</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US">Bug/webrev :</span><o:p></o:p></p>
<p class="MsoNormal"><span lang="EN-US"> </span><o:p></o:p></p>
<p class="MsoNormal"><a
href="https://bugs.openjdk.java.net/browse/JDK-8231357"
moz-do-not-send="true">https://bugs.openjdk.java.net/browse/JDK-8231357</a><o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"><a
href="http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.0/"
moz-do-not-send="true">http://cr.openjdk.java.net/~mbaesken/webrevs/8231357.0/</a><o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal"> <o:p></o:p></p>
<p class="MsoNormal">Thanks, Matthias<o:p></o:p></p>
</div>
</div>
</blockquote>
</body>
</html>