Loading... (original) (raw)
- Type:
Enhancement
- Resolution: Fixed
- Priority:
P2
- Fix Version/s: 13
- Affects Version/s: openjdk8u272, 11, 13
- Labels:
Support X25519 and X448 EC curves for Diffie-Hellman in the JSSE implementation for TLS.
The original scope of this RFE was to implement for TLSv1.3 only, since TLS 1.2 and earlier are organized very differently w.r.t. key agreement. But it appears that there could be interoperability issues if TLS 1.2/1.1/1 aren't supported (see comment below).
backported by
JDK-8226103 Support X25519 and X448 in TLS
- Resolved
JDK-8256030 Support X25519 and X448 in TLS
- Resolved
JDK-8252226 Support X25519 and X448 in TLS
- Closed
csr for
JDK-8224520 Support X25519 and X448 in TLS
- Closed
duplicates
JDK-8217709 TLS 1.3 server always answer Hello Retry Request (on chrome)
- Closed
relates to
JDK-8260300 Restrict TLS signature schemes in 8u
- Resolved
JDK-8234467 Some TLSv1.3 handshakes fail with a decode_error rather than negotiating to 1.2
- Closed
JDK-8145252 JEP 332: Transport Layer Security (TLS) 1.3
- Closed
JDK-8257607 Support third-party providers in SunJSSE for EdDSA and XDH
- Open
JDK-8178429 SSLHandshakeException "Unsupported curveId: 29"
- Closed
JDK-8171277 Elliptic Curves for Security in Crypto
- Resolved
JDK-8224650 Add tests to support X25519 and X448 in TLS
- Resolved
(7 relates to)