Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-5310

Enforce EMS in Java in FIPS mode

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • Impediment
    • None
    • rhel-security-crypto-spades
    • ssg_security
    • None
    • True
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • If docs needed, set a value
    • None
    • 57,005

      I've learned of jdk.tls.allowLegacyMasterSecret=false option's existence.

      Should I set it in FIPS mode? What are the downsides?
      Which of the JDK versions we ship have this option working?
      Will it be simply ignored by those that don't have it working?

              asosedki@redhat.com Alexander Sosedkin
              asosedki@redhat.com Alexander Sosedkin
              Alexander Sosedkin Alexander Sosedkin
              SSG Security QE SSG Security QE
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: