Blame SOURCES/pr3083-rh1346460-for_ssl_debug_return_null_instead_of_exception_when_theres_no_ecc_provider.patch

4ca1da
# HG changeset patch
4ca1da
# User andrew
4ca1da
# Date 1467652889 -3600
4ca1da
#      Mon Jul 04 18:21:29 2016 +0100
4ca1da
# Node ID a4541d1d8609cadb08d3e31b40b9184ff32dd6c3
4ca1da
# Parent  bc6eab2038c603afb2eb2b4644f3b900c8fd0c46
4ca1da
PR3083, RH1346460: Regression in SSL debug output without an ECC provider
4ca1da
Summary: Return null rather than throwing an exception when there's no ECC provider.
4ca1da
7305c2
diff --git openjdk.orig/jdk/src/share/classes/sun/security/ec/ECKeyPairGenerator.java openjdk/jdk/src/share/classes/sun/security/ec/ECKeyPairGenerator.java
7305c2
--- openjdk.orig/jdk/src/share/classes/sun/security/ec/ECKeyPairGenerator.java
7305c2
+++ openjdk/jdk/src/share/classes/sun/security/ec/ECKeyPairGenerator.java
7305c2
@@ -121,7 +121,7 @@
7305c2
     private static void ensureCurveIsSupported(ECParameterSpec ecSpec)
7305c2
         throws InvalidAlgorithmParameterException {
7305c2
 
7305c2
-        AlgorithmParameters ecParams = ECUtil.getECParameters(null);
7305c2
+        AlgorithmParameters ecParams = ECUtil.getECParameters(null, true);
7305c2
         byte[] encodedParams;
7305c2
         try {
7305c2
             ecParams.init(ecSpec);
7305c2
diff --git openjdk.orig/jdk/src/share/classes/sun/security/util/Debug.java openjdk/jdk/src/share/classes/sun/security/util/Debug.java
7305c2
--- openjdk.orig/jdk/src/share/classes/sun/security/util/Debug.java
7305c2
+++ openjdk/jdk/src/share/classes/sun/security/util/Debug.java
4ca1da
@@ -73,6 +73,7 @@
4ca1da
         System.err.println("certpath      PKIX CertPathBuilder and");
4ca1da
         System.err.println("              CertPathValidator debugging");
4ca1da
         System.err.println("combiner      SubjectDomainCombiner debugging");
4ca1da
+        System.err.println("ecc           Elliptic Curve Cryptography debugging");
4ca1da
         System.err.println("gssloginconfig");
4ca1da
         System.err.println("              GSS LoginConfigImpl debugging");
4ca1da
         System.err.println("configfile    JAAS ConfigFile loading");
7305c2
diff --git openjdk.orig/jdk/src/share/classes/sun/security/util/ECUtil.java openjdk/jdk/src/share/classes/sun/security/util/ECUtil.java
7305c2
--- openjdk.orig/jdk/src/share/classes/sun/security/util/ECUtil.java
7305c2
+++ openjdk/jdk/src/share/classes/sun/security/util/ECUtil.java
4ca1da
@@ -41,6 +41,9 @@
4ca1da
 
d92b92
 public final class ECUtil {
4ca1da
 
4ca1da
+    /* Are we debugging ? */
4ca1da
+    private static final Debug debug = Debug.getInstance("ecc");
4ca1da
+
4ca1da
     // Used by SunPKCS11 and SunJSSE.
4ca1da
     public static ECPoint decodePoint(byte[] data, EllipticCurve curve)
4ca1da
             throws IOException {
4ca1da
@@ -90,6 +93,10 @@
4ca1da
     }
4ca1da
 
7305c2
     public static AlgorithmParameters getECParameters(Provider p) {
4ca1da
+        return getECParameters(p, false);
4ca1da
+    }
4ca1da
+
7305c2
+    public static AlgorithmParameters getECParameters(Provider p, boolean throwException) {
4ca1da
         try {
4ca1da
             if (p != null) {
4ca1da
                 return AlgorithmParameters.getInstance("EC", p);
4ca1da
@@ -97,13 +104,21 @@
4ca1da
 
4ca1da
             return AlgorithmParameters.getInstance("EC");
4ca1da
         } catch (NoSuchAlgorithmException nsae) {
4ca1da
-            throw new RuntimeException(nsae);
4ca1da
+            if (throwException) {
4ca1da
+                throw new RuntimeException(nsae);
4ca1da
+            } else {
4ca1da
+                // ECC provider is optional so just return null
4ca1da
+                if (debug != null) {
4ca1da
+                    debug.println("Provider unavailable: " + nsae);
4ca1da
+                }
4ca1da
+                return null;
4ca1da
+            }
4ca1da
         }
4ca1da
     }
4ca1da
 
4ca1da
     public static byte[] encodeECParameterSpec(Provider p,
4ca1da
                                                ECParameterSpec spec) {
4ca1da
-        AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        AlgorithmParameters parameters = getECParameters(p, true);
4ca1da
 
4ca1da
         try {
4ca1da
             parameters.init(spec);
4ca1da
@@ -122,11 +137,16 @@
4ca1da
     public static ECParameterSpec getECParameterSpec(Provider p,
4ca1da
                                                      ECParameterSpec spec) {
4ca1da
         AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        if (parameters == null)
4ca1da
+            return null;
4ca1da
 
4ca1da
         try {
4ca1da
             parameters.init(spec);
4ca1da
             return parameters.getParameterSpec(ECParameterSpec.class);
4ca1da
         } catch (InvalidParameterSpecException ipse) {
4ca1da
+            if (debug != null) {
4ca1da
+                debug.println("Invalid parameter specification: " + ipse);
4ca1da
+            }
4ca1da
             return null;
4ca1da
         }
4ca1da
     }
4ca1da
@@ -135,34 +155,49 @@
4ca1da
                                                      byte[] params)
4ca1da
             throws IOException {
4ca1da
         AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        if (parameters == null)
4ca1da
+            return null;
4ca1da
 
4ca1da
         parameters.init(params);
4ca1da
 
4ca1da
         try {
4ca1da
             return parameters.getParameterSpec(ECParameterSpec.class);
4ca1da
         } catch (InvalidParameterSpecException ipse) {
4ca1da
+            if (debug != null) {
4ca1da
+                debug.println("Invalid parameter specification: " + ipse);
4ca1da
+            }
4ca1da
             return null;
4ca1da
         }
4ca1da
     }
4ca1da
 
4ca1da
     public static ECParameterSpec getECParameterSpec(Provider p, String name) {
4ca1da
         AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        if (parameters == null)
4ca1da
+            return null;
4ca1da
 
4ca1da
         try {
4ca1da
             parameters.init(new ECGenParameterSpec(name));
4ca1da
             return parameters.getParameterSpec(ECParameterSpec.class);
4ca1da
         } catch (InvalidParameterSpecException ipse) {
4ca1da
+            if (debug != null) {
4ca1da
+                debug.println("Invalid parameter specification: " + ipse);
4ca1da
+            }
4ca1da
             return null;
4ca1da
         }
4ca1da
     }
4ca1da
 
4ca1da
     public static ECParameterSpec getECParameterSpec(Provider p, int keySize) {
4ca1da
         AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        if (parameters == null)
4ca1da
+            return null;
4ca1da
 
4ca1da
         try {
4ca1da
             parameters.init(new ECKeySizeParameterSpec(keySize));
4ca1da
             return parameters.getParameterSpec(ECParameterSpec.class);
4ca1da
         } catch (InvalidParameterSpecException ipse) {
4ca1da
+            if (debug != null) {
4ca1da
+                debug.println("Invalid parameter specification: " + ipse);
4ca1da
+            }
4ca1da
             return null;
4ca1da
         }
4ca1da
 
4ca1da
@@ -171,11 +206,16 @@
4ca1da
     public static String getCurveName(Provider p, ECParameterSpec spec) {
4ca1da
         ECGenParameterSpec nameSpec;
4ca1da
         AlgorithmParameters parameters = getECParameters(p);
4ca1da
+        if (parameters == null)
4ca1da
+            return null;
4ca1da
 
4ca1da
         try {
4ca1da
             parameters.init(spec);
4ca1da
             nameSpec = parameters.getParameterSpec(ECGenParameterSpec.class);
4ca1da
         } catch (InvalidParameterSpecException ipse) {
4ca1da
+            if (debug != null) {
4ca1da
+                debug.println("Invalid parameter specification: " + ipse);
4ca1da
+            }
4ca1da
             return null;
4ca1da
         }
4ca1da