jdk/src/java.base/share/conf/security/java.security
changeset 39563 1449ed425710
parent 39339 3a9850ed77e8
child 39767 797c32a7d4e2
--- a/jdk/src/java.base/share/conf/security/java.security	Sat Jul 09 05:48:16 2016 +0000
+++ b/jdk/src/java.base/share/conf/security/java.security	Sat Jul 09 05:56:18 2016 +0000
@@ -653,7 +653,7 @@
 #
 #
 jdk.certpath.disabledAlgorithms=MD2, MD5, RSA keySize < 1024, \
-    DSA keySize < 1024
+    DSA keySize < 1024, EC keySize < 224
 
 # Algorithm restrictions for Secure Socket Layer/Transport Layer Security
 # (SSL/TLS/DTLS) processing
@@ -681,7 +681,8 @@
 #
 # Example:
 #   jdk.tls.disabledAlgorithms=MD5, SSLv3, DSA, RSA keySize < 2048
-jdk.tls.disabledAlgorithms=SSLv3, RC4, MD5withRSA, DH keySize < 1024
+jdk.tls.disabledAlgorithms=SSLv3, RC4, MD5withRSA, DH keySize < 1024, \
+    EC keySize < 224
 
 # Legacy algorithms for Secure Socket Layer/Transport Layer Security (SSL/TLS)
 # processing in JSSE implementation.