Hello, The bug does not explain why. I would understand to completely deny SHA1 (I.e. Unconditionally), but allowing it seems strange, especially without a justification.
Gruss Bernd -- http://bernd.eckenfels.net On Mon, Feb 13, 2017 at 10:57 PM +0100, "Anthony Scarpino" <anthony.scarp...@oracle.com> wrote: Hi, I need a quick review on a simple certpath config change. http://cr.openjdk.java.net/~ascarpino/8174849/webrev/ thanks Tony