On Wed, 2 Dec 2020 17:14:11 GMT, Jamil Nimeh wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process for messa
> Hello all,
> This change brings in support for certificates with EdDSA keys (both Ed25519
> and Ed448) allowing those signature algorithms to be used both on the
> certificates themselves and used during the handshaking process for messages
> like CertificateVerify, ServerKeyExchange and so fo
On Wed, 2 Dec 2020 15:33:20 GMT, Jamil Nimeh wrote:
>> SunEC's algorithm name for keys are always "EdDSA", but I know BC returns
>> "Ed25519" or "Ed448".
>
> Filed and took ownership of JDK-8257607 to address BC JCE provider issues for
> both XDH and EdDSA when used with SunJSSE.
Also, specifi
On Fri, 20 Nov 2020 20:05:09 GMT, Weijun Wang wrote:
>> src/java.base/share/classes/sun/security/ssl/JsseJce.java line 97:
>>
>>> 95: */
>>> 96: static final String SIGNATURE_EDDSA = "EdDSA";
>>> 97:
>>
>> Please update the copyright year.
>>
>> Is it possible that "ed25519" or "ed44
> Hello all,
> This change brings in support for certificates with EdDSA keys (both Ed25519
> and Ed448) allowing those signature algorithms to be used both on the
> certificates themselves and used during the handshaking process for messages
> like CertificateVerify, ServerKeyExchange and so fo
On Fri, 20 Nov 2020 20:22:33 GMT, Jamil Nimeh wrote:
>> src/java.base/share/classes/sun/security/ssl/CertificateRequest.java line
>> 139:
>>
>>> 137: if (cct.isAvailable) {
>>> 138: cct.keyAlgorithm.forEach(key -> {
>>> 139: if (!keyTy
On Fri, 20 Nov 2020 20:39:46 GMT, Xue-Lei Andrew Fan wrote:
>> JsseJce.isEcAvailable doesn't check for EdDSA availability so I'm not sure
>> we want that second clause. I don't think the EdDSA code is implemented in
>> the same module as the other EC code is so I don't know if we'd want to
>>
On Fri, 20 Nov 2020 20:12:47 GMT, Jamil Nimeh wrote:
>> src/java.base/share/classes/sun/security/ssl/SignatureScheme.java line 73:
>>
>>> 71: ED448 (0x0808, "ed448", "Ed448",
>>> 72: "EdDSA",
>>> 73: Pr
On Fri, 20 Nov 2020 19:58:23 GMT, Weijun Wang wrote:
>> Jamil Nimeh has updated the pull request with a new target base due to a
>> merge or a rebase. The incremental webrev excludes the unrelated changes
>> brought in by the merge/rebase. The pull request contains seven additional
>> commits
On Fri, 20 Nov 2020 18:37:36 GMT, Xue-Lei Andrew Fan wrote:
>> Jamil Nimeh has updated the pull request with a new target base due to a
>> merge or a rebase. The incremental webrev excludes the unrelated changes
>> brought in by the merge/rebase. The pull request contains seven additional
>> c
On Fri, 20 Nov 2020 17:31:20 GMT, Xue-Lei Andrew Fan wrote:
>> Jamil Nimeh has updated the pull request with a new target base due to a
>> merge or a rebase. The incremental webrev excludes the unrelated changes
>> brought in by the merge/rebase. The pull request contains seven additional
>> c
On Fri, 20 Nov 2020 18:09:26 GMT, Xue-Lei Andrew Fan wrote:
>> Jamil Nimeh has updated the pull request with a new target base due to a
>> merge or a rebase. The incremental webrev excludes the unrelated changes
>> brought in by the merge/rebase. The pull request contains seven additional
>> c
On Thu, 19 Nov 2020 17:48:34 GMT, Jamil Nimeh wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process for mess
On Thu, 19 Nov 2020 17:48:34 GMT, Jamil Nimeh wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process for mess
> Hello all,
> This change brings in support for certificates with EdDSA keys (both Ed25519
> and Ed448) allowing those signature algorithms to be used both on the
> certificates themselves and used during the handshaking process for messages
> like CertificateVerify, ServerKeyExchange and so fo
> Hello all,
> This change brings in support for certificates with EdDSA keys (both Ed25519
> and Ed448) allowing those signature algorithms to be used both on the
> certificates themselves and used during the handshaking process for messages
> like CertificateVerify, ServerKeyExchange and so fo
On Tue, 17 Nov 2020 23:31:13 GMT, Jamil Nimeh wrote:
>> I don't think there's any reason why we could use a
>> Collection for these. I'll try switching to that.
>
> Xuelei, I went back and looked at my rationale for using Strings here. The
> reason I went with this approach was so I could hav
On Tue, 17 Nov 2020 19:43:25 GMT, Jamil Nimeh wrote:
>> test/jdk/javax/net/ssl/TLSCommon/TLSWithEdDSA.java line 81:
>>
>>> 79: static final String DEF_ALL_EE =
>>> "EE_ECDSA_SECP256R1:EE_ECDSA_SECP384R1:" +
>>> 80: "EE_ECDSA_SECP521R1:EE_RSA_2048:EE_EC_RSA_SECP256R1:" +
>>> 81:
On Tue, 17 Nov 2020 18:32:34 GMT, Xue-Lei Andrew Fan wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process f
On Tue, 17 Nov 2020 19:47:37 GMT, Jamil Nimeh wrote:
>> test/jdk/javax/net/ssl/TLSCommon/TLSWithEdDSA.java line 583:
>>
>>> 581: serverParameters.put(ParamType.CERTALIAS, "EE_ED25519");
>>> 582: runtest(testFormat, isPeerEd25519, null, null, null);
>>> 583: serverParamete
On Tue, 17 Nov 2020 19:07:33 GMT, Xue-Lei Andrew Fan wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process f
On Tue, 17 Nov 2020 18:29:13 GMT, Xue-Lei Andrew Fan wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process f
On Tue, 17 Nov 2020 18:24:35 GMT, Xue-Lei Andrew Fan wrote:
>> Hello all,
>> This change brings in support for certificates with EdDSA keys (both Ed25519
>> and Ed448) allowing those signature algorithms to be used both on the
>> certificates themselves and used during the handshaking process f
On Fri, 13 Nov 2020 04:57:12 GMT, Jamil Nimeh wrote:
> Hello all,
> This change brings in support for certificates with EdDSA keys (both Ed25519
> and Ed448) allowing those signature algorithms to be used both on the
> certificates themselves and used during the handshaking process for messages
24 matches
Mail list logo