Re: TLS 1.3 Support
Mondain <[email protected]> Mon, 12 Aug 2019 07:47:30 -0700
| Newsgroups | gmane.comp.encryption.bouncy-castle.devel |
|---|---|
| Message-ID | <CAHQq8QKD7HjjnvmMhmRuCi=5vtYyZ43j6iV_mxhbgeS-47SuXw@mail.gmail.com> |
The OpenJSSE stuff is here: https://github.com/openjsse/openjsse I looked at it for my current project, but it seemed very difficult to use with everything seemingly `package private`. Going with something custom util BC has the support built-in. Regards, Paul On Mon, Aug 12, 2019 at 7:18 AM Eckenfels. Bernd <[email protected]> wrote: > Just FYI, in Zulu8 JDKs you get the „OpenJSSE“ which is TLS1.3 able and a > backport from later OpenJDK versions. This might help you until you can > use the BC version. > > > > Gruss > > Bernd > > *Von:* Mondain <[email protected]> > *Gesendet:* Montag, 12. August 2019 16:06 > *An:* [email protected] > *Cc:* [email protected] > *Betreff:* Re: [dev-crypto] TLS 1.3 Support > > > > Thank you for the update, Pete; I appreciate all the work BC does for the > communities and I saw some notes about sponsoring the TLS 1.3 after I > posted the question. While I cannot fund such a large effort myself; has > anyone on the team looked at doing a bounty for the work? I'd be willing to > contribute to that on something like https://gitcoin.co/ or wherever. > > > > Best Regards, > > Paul > > > > On Sun, Aug 11, 2019 at 9:18 PM Peter Dettman < > [email protected]> wrote: > > Hi Paul, > No, TLS 1.3 is not currently supported, although quite a lot of work has > been done on RFC 8446 in the last year. e.g.: > > - The "Updates Affecting TLS 1.2" have been applied. > - X25519, X448, Ed25519, Ed448 are supported. > - the new key-schedule HKDF algs are implemented > > Regards, > Pete Dettman > > > On 6/8/19 10:46 pm, Mondain wrote: > > I've looked over the bc website and release notes; I don't see any > > information about TLS 1.3 support. Am I missing something? Is there > support > > in the Java libraries? > > > > Best Regards, > > Paul > > > > -- > > http://gregoire.org/ > > https://github.com/Red5 <http://code.google.com/p/red5/> > > > > > -- > > http://gregoire.org/ > https://github.com/Red5 <http://code.google.com/p/red5/> > > > > > > > > *SEEBURGER AG* Vorstand/SEEBURGER Executive Board: > Sitz der Gesellschaft/Registered Office: Axel Haas, Michael Kleeberg, > Axel Otto, Dr. Martin Kuntz, Matthias Feßenbecker > Edisonstr. 1 > D-75015 Bretten Vorsitzende des Aufsichtsrats/Chairperson of the > SEEBURGER Supervisory Board: > Tel.: 07252 / 96 - 0 Prof. Dr. Simone Zeuchner > Fax: 07252 / 96 - 2222 > Internet: http://www.seeburger.de Registergericht/Commercial Register: > e-mail: [email protected] HRB 240708 Mannheim > > > Dieses E-Mail ist nur für den Empfänger bestimmt, an den es gerichtet ist > und kann vertrauliches bzw. unter das Berufsgeheimnis fallendes Material > enthalten. Jegliche darin enthaltene Ansicht oder Meinungsäußerung ist die > des Autors und stellt nicht notwendigerweise die Ansicht oder Meinung der > SEEBURGER AG dar. Sind Sie nicht der Empfänger, so haben Sie diese E-Mail > irrtümlich erhalten und jegliche Verwendung, Veröffentlichung, > Weiterleitung, Abschrift oder jeglicher Druck dieser E-Mail ist strengstens > untersagt. Weder die SEEBURGER AG noch der Absender (Eckenfels. Bernd) > übernehmen die Haftung für Viren; es obliegt Ihrer Verantwortung, die > E-Mail und deren Anhänge auf Viren zu prüfen. > > This email is intended only for the recipient(s) to whom it is addressed. > This email may contain confidential material that may be protected by > professional secrecy. Any fact or opinion contained, or expression of the > material herein, does not necessarily reflect that of SEEBURGER AG. If you > are not the addressee or if you have received this email in error, any use, > publication or distribution including forwarding, copying or printing is > strictly prohibited. Neither SEEBURGER AG, nor the sender (Eckenfels. > Bernd) accept liability for viruses; it is your responsibility to check > this email and its attachments for viruses. > > -- http://gregoire.org/ https://github.com/Red5 <http://code.google.com/p/red5/>