test/jdk/sun/security/pkcs11/Signature/KeyAndParamCheckForPSS.java
author chegar
Thu, 17 Oct 2019 20:54:25 +0100
branchdatagramsocketimpl-branch
changeset 58679 9c3209ff7550
parent 58678 9cf78a70fa4f
parent 55530 6aa047de311b
permissions -rw-r--r--
datagramsocketimpl-branch: merge with default
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     1
/*
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     2
 * Copyright (c) 2019, Oracle and/or its affiliates. All rights reserved.
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     4
 *
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     7
 * published by the Free Software Foundation.
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     8
 *
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
     9
 * This code is distributed in the hope that it will be useful, but WITHOUT
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    10
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    11
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    12
 * version 2 for more details (a copy is included in the LICENSE file that
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    13
 * accompanied this code).
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    14
 *
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    15
 * You should have received a copy of the GNU General Public License version
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    16
 * 2 along with this work; if not, write to the Free Software Foundation,
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    17
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    18
 *
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    19
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    20
 * or visit www.oracle.com if you need additional information or have any
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    21
 * questions.
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    22
 */
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    23
import java.security.*;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    24
import java.security.interfaces.*;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    25
import java.security.spec.*;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    26
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    27
/**
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    28
 * @test
55530
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    29
 * @bug 8080462 8226651
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    30
 * @summary Ensure that PSS key and params check are implemented properly
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    31
 *         regardless of call sequence
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    32
 * @library /test/lib ..
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    33
 * @modules jdk.crypto.cryptoki
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    34
 * @run main KeyAndParamCheckForPSS
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    35
 */
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    36
public class KeyAndParamCheckForPSS extends PKCS11Test {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    37
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    38
    /**
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    39
     * ALGORITHM name, fixed as RSA for PKCS11
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    40
     */
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    41
    private static final String KEYALG = "RSA";
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    42
    private static final String SIGALG = "RSASSA-PSS";
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    43
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    44
    public static void main(String[] args) throws Exception {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    45
        main(new KeyAndParamCheckForPSS(), args);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    46
    }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    47
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    48
    @Override
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    49
    public void main(Provider p) throws Exception {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    50
        Signature sig;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    51
        try {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    52
            sig = Signature.getInstance(SIGALG, p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    53
        } catch (NoSuchAlgorithmException e) {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    54
            System.out.println("Skip testing RSASSA-PSS" +
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    55
                " due to no support");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    56
            return;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    57
        }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    58
        // NOTE: key length >= (digest length + 2) in bytes
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    59
        // otherwise, even salt length = 0 would not work
55530
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    60
        runTest(p, 1024, "SHA-256", "SHA-256");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    61
        runTest(p, 1024, "SHA-256", "SHA-384");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    62
        runTest(p, 1024, "SHA-256", "SHA-512");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    63
        runTest(p, 1024, "SHA-384", "SHA-256");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    64
        runTest(p, 1024, "SHA-384", "SHA-384");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    65
        runTest(p, 1024, "SHA-384", "SHA-512");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    66
        runTest(p, 1040, "SHA-512", "SHA-256");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    67
        runTest(p, 1040, "SHA-512", "SHA-384");
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    68
        runTest(p, 1040, "SHA-512", "SHA-512");
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    69
    }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    70
55530
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    71
    private void runTest(Provider p, int keySize, String hashAlg,
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    72
            String mgfHashAlg) throws Exception {
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    73
        System.out.println("Testing [" + keySize + " " + hashAlg + "]");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    74
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    75
        // create a key pair with the supplied size
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    76
        KeyPairGenerator kpg = KeyPairGenerator.getInstance(KEYALG, p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    77
        kpg.initialize(keySize);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    78
        KeyPair kp = kpg.generateKeyPair();
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    79
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    80
        int bigSaltLen = keySize/8 - 14;
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    81
        AlgorithmParameterSpec paramsBad = new PSSParameterSpec(hashAlg,
55530
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    82
            "MGF1", new MGF1ParameterSpec(mgfHashAlg), bigSaltLen, 1);
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    83
        AlgorithmParameterSpec paramsGood = new PSSParameterSpec(hashAlg,
55530
6aa047de311b 8226651: Setting the mgfHash in CK_RSA_PKCS_PSS_PARAMS has no effect
valeriep
parents: 55332
diff changeset
    84
            "MGF1", new MGF1ParameterSpec(mgfHashAlg), 0, 1);
55332
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    85
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    86
        PrivateKey priv = kp.getPrivate();
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    87
        PublicKey pub = kp.getPublic();
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    88
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    89
        // test#1 - setParameter then initSign
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    90
        Signature sig = Signature.getInstance("RSASSA-PSS", p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    91
        sig.setParameter(paramsBad);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    92
        try {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    93
            sig.initSign(priv);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    94
            throw new RuntimeException("Expected IKE not thrown");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    95
        } catch (InvalidKeyException ike) {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    96
            System.out.println("test#1: got expected IKE");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    97
        }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    98
        sig.setParameter(paramsGood);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
    99
        sig.initSign(priv);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   100
        System.out.println("test#1: pass");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   101
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   102
        // test#2 - setParameter then initVerify
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   103
        sig = Signature.getInstance("RSASSA-PSS", p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   104
        sig.setParameter(paramsBad);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   105
        try {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   106
            sig.initVerify(pub);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   107
            throw new RuntimeException("Expected IKE not thrown");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   108
        } catch (InvalidKeyException ike) {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   109
            System.out.println("test#2: got expected IKE");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   110
        }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   111
        sig.setParameter(paramsGood);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   112
        sig.initVerify(pub);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   113
        System.out.println("test#2: pass");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   114
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   115
        // test#3 - initSign, then setParameter
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   116
        sig = Signature.getInstance("RSASSA-PSS", p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   117
        sig.initSign(priv);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   118
        try {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   119
            sig.setParameter(paramsBad);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   120
            throw new RuntimeException("Expected IAPE not thrown");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   121
        } catch (InvalidAlgorithmParameterException iape) {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   122
            System.out.println("test#3: got expected IAPE");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   123
        }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   124
        sig.setParameter(paramsGood);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   125
        System.out.println("test#3: pass");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   126
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   127
        // test#4 - initVerify, then setParameter
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   128
        sig = Signature.getInstance("RSASSA-PSS", p);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   129
        sig.initVerify(pub);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   130
        try {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   131
            sig.setParameter(paramsBad);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   132
            throw new RuntimeException("Expected IAPE not thrown");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   133
        } catch (InvalidAlgorithmParameterException iape) {
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   134
            System.out.println("test#4: got expected IAPE");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   135
        }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   136
        sig.setParameter(paramsGood);
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   137
        System.out.println("test#4: pass");
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   138
    }
f492567244ab 8080462: Update SunPKCS11 provider with PKCS11 v2.40 support
valeriep
parents:
diff changeset
   139
}