Re: Certificate Transparency—basic support for the TLS extension?

2025-03-01 Thread Jamil Nimeh
Hello Ivan, You bring up an interesting idea, and it comes at a good time because we've been going back and taking another look at CT and SunJSSE.  What you are suggesting would be a useful addition, and could also be a step towards a full implementation.  I have created https://bugs.openjdk.

Re: RFR: 8325448: Hybrid Public Key Encryption [v6]

2025-03-01 Thread Weijun Wang
> Implement HPKE as defined in https://datatracker.ietf.org/doc/rfc9180/. > > ![HPKEParameterSpec](https://github.com/user-attachments/assets/4f64567a-59b0-473e-8a3b-416565f5bca5) Weijun Wang has updated the pull request incrementally with one additional commit since the last revision: typo,

Re: 8245545: TLS_RSA roadmap

2025-03-01 Thread Bernd
Thanks Sean for the clarification - so I can expect that policy change for this year.(And also good hint about the cipher order, the additional legacy setting for SHA or TLS_RSA would indeed not do muchBTW  we use the property to display on the UI a warning if any of the ciphers are manually config