JDK-8245654 : Add Certigna Root CA
  • Type: Enhancement
  • Component: security-libs
  • Sub-Component: java.security
  • Priority: P3
  • Status: Resolved
  • Resolution: Fixed
  • Submitted: 2020-05-22
  • Updated: 2025-06-16
  • Resolved: 2023-02-09
The Version table provides details related to the release that this issue/RFE will be addressed.

Unresolved : Release in which this issue/RFE will be addressed.
Resolved: Release in which this issue/RFE has been resolved.
Fixed : Release in which this issue/RFE has been fixed. The release containing this fix may be available for download as an Early Access Release or a General Availability Release.

To download the current JDK release, click here.
JDK 11 JDK 17 JDK 20 JDK 21 JDK 7 JDK 8 Other
11.0.19-oracleFixed 17.0.7-oracleFixed 20.0.1Fixed 21 b10Fixed 7u381Fixed 8u371Fixed openjdk8u382,shenandoah8u372Fixed
Related Reports
Duplicate :  
Relates :  
Sub Tasks
JDK-8292950 :  
Description
Add Certigna Root CA.
Comments
Critical request (OpenJDK 8u): Please approve this ca-cert addition for 8u371 Oracle parity. Almost clean backport, modulo path changes. Reviewed by Paul Hohensee. Testing looks clean once JDK-8248899 and JDK-8243543 get included as well. Low risk, as it's only adding one additional certificate to the default cacerts file.
03-03-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk8u/pull/36 Date: 2023-03-03 14:31:53 +0000
03-03-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk8u-dev/pull/272 Date: 2023-02-28 16:16:28 +0000
28-02-2023

Fix request [11u] I backport this for parity with 11.0.19-oracle. A new certificate. This can not break existing code, but someone might not like this certificate. But we should be compatible here. Clean backport from 17. Tests pass. SAP nighlty testing passed.
28-02-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk11u-dev/pull/1775 Date: 2023-02-27 08:13:38 +0000
27-02-2023

Fix request [17u] I backport this for parity with 17.0.7-oracle. A new certificate. This can not break existing code, but someone might not like this certificate. But we should be compatible here. I had to do some canonic resolves. Tests pass. SAP nightly testing passes.
23-02-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk17u-dev/pull/1185 Date: 2023-02-22 12:09:00 +0000
22-02-2023

Fix Request jdk20u: The fix is to add new root CA certficate. The patch applies cleanly and has good test coverage.
13-02-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk20u/pull/4 Date: 2023-02-09 23:06:18 +0000
09-02-2023

Changeset: 8c87a674 Author: Rajan Halade <rhalade@openjdk.org> Date: 2023-02-09 20:48:37 +0000 URL: https://git.openjdk.org/jdk/commit/8c87a67419b91f254ed7e4dd8ac8d294b8c4735e
09-02-2023

A pull request was submitted for review. URL: https://git.openjdk.org/jdk/pull/12376 Date: 2023-02-01 21:28:25 +0000
01-02-2023

No signed OCA from CA.
01-12-2022

A pull request was submitted for review. URL: https://git.openjdk.org/jdk/pull/10030 Date: 2022-08-25 16:00:54 +0000
25-08-2022