Configuring TLS JSSE vs OpenSSL

2022-01-18 Thread Christopher Schultz
All, There are a bunch of parameters in SSLHostConfig which are documented[1] to be "OpenSSL Only" and "JSSE only". I thought we made it so either configuration could be used with either underlying crypto engine. Is that not true? Or is it only true if you are using JSSE with OpenSSL as the

Re: Tomcat 9 Encrpytion of JDBC

2022-01-18 Thread Christopher Schultz
John, On 1/18/22 08:37, Orendt, John wrote: Secrets are more secure with the use of a Trusted Platform Module (TPM) and / or a Hardware Security Module (HSM). Secrets need to be protected both at rest and in transit. Sure. Where you put the password for the TPM or HSM? Or do you enter the

RE: Tomcat 9 Encrpytion of JDBC

2022-01-18 Thread Orendt, John
Hi All Secrets are more secure with the use of a Trusted Platform Module (TPM) and / or a Hardware Security Module (HSM). Secrets need to be protected both at rest and in transit. John Orendt john.p.ore...@medtronic.com -Original Message- From: Alan F Sent: Friday, January 14, 2022