United StatesChange Country, Oracle Worldwide Web Sites Communities I am a... I want to...
Bug ID: 6273877 Better support for NSS keystore
6273877 : Better support for NSS keystore

Details
Type:
Enhancement
Submit Date:
2005-05-20
Status:
Resolved
Updated Date:
2010-04-02
Project Name:
JDK
Resolved Date:
2005-05-27
Component:
security-libs
OS:
generic
Sub-Component:
javax.crypto:pkcs11
CPU:
generic
Priority:
P2
Resolution:
Fixed
Affected Versions:
6
Fixed Versions:
6

Related Reports
Duplicate:

Sub Tasks

Description
From http://jplan.sfbay/feature/076 :

Description
Network Security Services (NSS) is the library that is used for all security functions in Mozilla as well as by all native components of the JES stack. Via the PKCS#11 support in Tiger, it is already possible the access the NSS keystore. This feature intends to address a few missing pieces:

 . NSS stores configuration information about its PKCS#11 modules in its secmod.db file, which we currently do not understand. By accessing this information we could reduce/eliminate the need for manual configuration.

 . NSS uses non-standard attributes to mark certificates as trusted. We should add support for them.

Motivation
AppServer and Access Manager have expressed their unhappiness about the current state of affairs and the extra work it causes them.

Plugin decided to use the JSS library to access NSS rather than the JDK's PKCS#11 support because of the configuration issue. However, JSS is receiving little attention in Sun now and therefore may not be a viable long term solution.

###@###.### 2005-05-20 18:41:46 GMT

                                    

Comments
EVALUATION

Integrator marking as integrated.  Please check with RE in order to determine
what the real evaluation was.


###@###.### 2005-05-27 16:34:35 GMT
                                     
2005-05-27



Hardware and Software, Engineered to Work Together