[jboss-jira] [JBoss JIRA] (WFLY-10945) JDK11 ws testsuite SSL failures

Martin Choma (Jira) issues at jboss.org
Mon Oct 8 10:40:00 EDT 2018


    [ https://issues.jboss.org/browse/WFLY-10945?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13644636#comment-13644636 ] 

Martin Choma commented on WFLY-10945:
-------------------------------------

Regarding TLSv1.2 issue this looks similar https://markmail.org/message/5ckezyfj5vj2v63r .
[~jbliznak] Is bouncy castle provider involved in test? It is not obvious at first glance, but is it possible Bouncy Castle is registred before JSSE on client side or server side?

> JDK11 ws testsuite SSL failures
> -------------------------------
>
>                 Key: WFLY-10945
>                 URL: https://issues.jboss.org/browse/WFLY-10945
>             Project: WildFly
>          Issue Type: Sub-task
>          Components: Test Suite
>    Affects Versions: 14.0.0.Beta2
>            Reporter: Jan Kalina
>            Assignee: Jan Kalina
>            Priority: Blocker
>             Fix For: 15.0.0.Alpha1
>
>
> ws testsuite failures on JDK-11:
> * missing local IP in SubjectAlternativeNamesExtension
> * TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 + TLS1.2 seems buggy on JDK-11: Invalid ECDH ServerKeyExchange signature
>  * not issue after switching to TLS1.1 or to ciphersuite TLS_RSA_WITH_AES_256_CBC_SHA256 -> JDK bug



--
This message was sent by Atlassian Jira
(v7.12.1#712002)


More information about the jboss-jira mailing list