BTW, is there any SHA1 deprecation planned/expected for JNLP code signing? -- http://bernd.eckenfels.net
-----Original Message----- From: "Seán Coffey" <sean.cof...@oracle.com> To: "security-dev@openjdk.java.net" <security-dev@openjdk.java.net> Sent: Mi., 27 Jan. 2016 17:40 Subject: RFR : 8038837:Add support to jarsigner for specifying timestamp hash algorithm Hi, I'd like to backport this enhancement to JDK 8u. It's been approved via CCC process already. The fix differs to that in JDK 9 in that I've chosen not to update the JDK 9 deprecated ContentSignerParameters interface. That was a request from Dev engineer. For jdk8u, the tSAPolicyID value is obtained from the JarSignerParameters class. I've moved that class to its own source file. Build and tests are green. webrev : http://cr.openjdk.java.net/~coffeys/webrev.8038837.8u/webrev*/ *bug report : https://bugs.openjdk.java.net/browse/JDK-8038837 -- Regards, Sean.