Re: ECC Key Usage ignored with and ECDH(E) ciphers

2017-05-23 Thread Xuelei Fan
.net *From:* Xuelei Fan *Sent:* Tuesday, May 23, 2017 9:12:10 PM *To:* Bernd; security-dev@openjdk.java.net *Subject:* Re: ECC Key Usage ignored with and ECDH(E) ciphers Hi Bernd, What are the JSSE key/trust managers used for the testing ("SunX509" or &q

Re: ECC Key Usage ignored with and ECDH(E) ciphers

2017-05-23 Thread Bernd Eckenfels
From: Xuelei Fan Sent: Tuesday, May 23, 2017 9:12:10 PM To: Bernd; security-dev@openjdk.java.net Subject: Re: ECC Key Usage ignored with and ECDH(E) ciphers Hi Bernd, What are the JSSE key/trust managers used for the testing ("SunX509" or "PKIX")? Thanks &

Re: ECC Key Usage ignored with and ECDH(E) ciphers

2017-05-23 Thread Xuelei Fan
Hi Bernd, What are the JSSE key/trust managers used for the testing ("SunX509" or "PKIX")? Thanks & Regards, Xuelei On 5/23/2017 7:08 AM, Bernd wrote: Hello, according to RFC 4492 the key usage for ECDHE and ECDH ciphers need to be observed in regards to key agreement: When I use ECDH_ECDS