[9] RFR 8177569: keytool should not warn if signature algorithm used in cacerts is weak (original) (raw)

Weijun Wang weijun.wang at oracle.com
Wed Mar 29 08:38:37 UTC 2017


Webrev updated at

http://cr.openjdk.java.net/~weijun/8177569/webrev.01

Changes since last version:

Thanks Max

On 03/27/2017 09:43 AM, Weijun Wang wrote:

Please take a review at

http://cr.openjdk.java.net/~weijun/8177569/webrev.00/ Since our implementation of CertPath validation does not check for the signature algorithm of a root CA, keytool should not warn about its weakness either. Thanks Max



More information about the security-dev mailing list