On Wed, 30 Apr 2025 15:43:31 GMT, Weijun Wang <wei...@openjdk.org> wrote:
> The private key encoding formats of ML-KEM and ML-DSA are updated to match > the latest IETF drafts at: > https://datatracker.ietf.org/doc/html/draft-ietf-lamps-dilithium-certificates-11 > and > https://datatracker.ietf.org/doc/html/draft-ietf-lamps-kyber-certificates-10. > New security/system properties are introduced to determine which CHOICE a > private key is encoded when a new key pair is generated or when > `KeyFactory::translateKey` is called. > > Both the encoding and the expanded format are stored inside a `NamedPKCS8Key` > now. When loading from a PKCS #8 key, the expanded format is calculated from > the input if it's seed only. This pull request has been closed without being integrated. ------------- PR: https://git.openjdk.org/jdk/pull/24969