You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
BCJSSE: add the BCSSLServerSocket extension interface, implemented by the provider's server sockets, allowing use of BCSSLParameters with server sockets from a BCJSSE SSLContext.
Copy file name to clipboardExpand all lines: docs/releasenotes.md
+2Lines changed: 2 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -59,6 +59,8 @@ Date: 2026, TBD
59
59
60
60
- XMSS and XMSS^MT have been promoted the same way: org.bouncycastle.jcajce.provider.asymmetric.xmss holds the KeyFactory, KeyPairGenerator and Signature implementations for both, the key interfaces are promoted to org.bouncycastle.jcajce.interfaces.XMSSKey, XMSSPrivateKey, XMSSMTKey and XMSSMTPrivateKey, and the parameter specs to org.bouncycastle.jcajce.spec.XMSSParameterSpec and XMSSMTParameterSpec. Both providers register the promoted classes for the "XMSS" and "XMSSMT" services, their prehash variants and the six ISARA, IANA and PQC object identifier aliases, and the key info converters the BC provider consults for those six identifiers return them as well. The org.bouncycastle.pqc.jcajce.provider.xmss classes, the LMS-style interfaces in org.bouncycastle.pqc.jcajce.interfaces and the parameter specs in org.bouncycastle.pqc.jcajce.spec remain, deprecated: the interfaces extend the promoted ones and the specs extend the promoted classes, keeping their own parameter set constants, so existing code compiles and existing spec objects still drive the key pair generators. As with LMS, a verification key that is not one of the provider's own - a key of the deprecated class, or one from another provider - is now taken through its encoding rather than refused.
61
61
62
+
- The BCJSSE provider adds an org.bouncycastle.jsse.BCSSLServerSocket extension interface, implemented by the server sockets its SSLContext creates, whose getParameters() and setParameters() allow a BCSSLParameters to be used with a server socket as BCSSLSocket and BCSSLEngine already allow, so BC-specific settings such as the named groups can be configured once for every connection the server socket accepts.
63
+
62
64
### 2.1.4 Additional Notes
63
65
64
66
- The sources and javadoc jars of the Ant-built distributions (jdk14, jdk15to18 and jdk13) no longer carry test material. Each module's javadoc target copies the package documentation it needs - org/bouncycastle/<area>/**/*.html - back into the module source directory that has already been compiled from, and zip-src zips that directory afterwards, so every test package's package.html arrived in the sources jar by that route; javadoc-util additionally copied org/bouncycastle/asn1/isismtt/**/*.java, which put test classes into the bcutil javadoc as generated pages, and javadoc-pg deliberately copied the gpg and bcpg test sources in order to document them. Separately the source copies excluded test material only one directory deep and only for *.java, because Ant reads ** as an any-depth wildcard just where it is a whole path segment, so anything nested further or with another extension - the PEM certificate fixtures under org/bouncycastle/est/test/san corrected in 1.86, and an ICAO master list under org/bouncycastle/asn1/icao/test - went through. The source and javadoc copies of every module now exclude test directories at any depth, and javadoc-pg no longer documents the test packages. org.bouncycastle.util.test is unaffected and still ships in the bcprov binary, sources and javadoc jars, as it does from the Gradle build: it is the SimpleTest framework the light-weight API's own test classes are written against, not test material of the distribution. No binary changes - the classes and resources of every Ant-built jar are identical to those of the 1.86 release - and the Gradle-built jdk18on artifacts never carried any of this.
0 commit comments