United StatesChange Country, Oracle Worldwide Web Sites Communities I am a... I want to...
JDK-7054637 : Enable PKCS11 to use raw encoding for the EC point in an Elliptic Curve public key

Details
Type:
Bug
Submit Date:
2011-06-14
Status:
Closed
Updated Date:
2012-10-03
Project Name:
JDK
Resolved Date:
2011-10-06
Component:
security-libs
OS:
solaris
Sub-Component:
java.security
CPU:
x86
Priority:
P3
Resolution:
Fixed
Affected Versions:
7
Fixed Versions:
7u2 (b08)

Related Reports
Backport:
Relates:

Sub Tasks

Description
see comments

                                    

Comments
EVALUATION

Some older PKCS11 tokens support only the raw encoding for an EC poing in an
Elliptic Curve public key. By default, the DER-encoding is used. Should introduce
a PKCS11 config attribute to enable the raw encoding to be used as necessary.
                                     
2011-09-15
WORK AROUND

This problem affects only ECC-key certs that are passed to the SunPKCS11 provider on Solaris 11. The workaround is to use the SunEC provider instead.
                                     
2011-06-20



Hardware and Software, Engineered to Work Together