Identity Management (MOSC)

MOSC Banner

Oracle Unified Directory and encrypt-then-MAC TLS extension

Hi,

we're looking at a requirement to secure certain TLS 1.2 CBC ciphers by using the TLS extension encrypt-then-MAC (RFC 7366). Obviously that's more of a question for the underlying JDK, but since I cannot find a category for that, although we're obviously using a supported Oracle Java 8 JDK, it has to go here.

I cannot seem to find anything about that TLS extension with regards to the JDK or JSSE, in any kind of documentation. (The only TLS extension I find mentioned is SNI.) However, there does seem to be code present for it, as per this since 2018:

Blaming shenandoah/src/java.base/share/classes/sun/security/ssl/SSLExtension.java at master · openjdk/shenandoah · GitHub

Tagged:

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center