IBM Support

IJ28792: PKCS11ECKEYPAIRPARAMETERSPEC WAS ADDED TO THE IBMPKCS11IMPL PROVIDER.

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 

APAR status

  • Closed as program error.

Error description

  • Error Message: N/A
    .
    Stack Trace: N/A
    .
    N/A
    

Local fix

Problem summary

  • The PKCS11RSAKeyPairParameterSpec and
    PKCS11DSAKeyPairParameterSpec classes within the IBMPKCS11Impl
    provider are used to pass PKCS11 key pair parameters (including
    the values of certain hardware key attributes) to the initialize
    method of the corresponding PKCS11 RSA or DSA KeyPairGenerator
    class.
    A similar KeyPairParameterSpec class for EC key pair generation
    was missing.
    

Problem conclusion

  • A PKCS11ECKeyPairParameterSpec has been added which can pass
    PKCS11 key pair parameters (including the values of certain
    hardware key attributes) to the initialize method of the PKCS11
    EC KeyPairGenerator class.
    The affected jar is: ibmpkcs11impl.jar
    The associated Hursley RTC Problem Report is: 144399
    The associated Austin Git Issue is: Issue#27 for IBMPKCS11Impl
    JVMs affected include: Java 7.0, 7.1, and 8.0.
    The fix was delivered for Java 7.0 sr10 fp80, Java 7.1 sr4 fp80,
    and Java 8.0 sr6 fp25.
    The build level of the ibmpkcs11impl.jar delivered for Java 7.0
    and 7.1 is: build-128
    The build level of the ibmpkcs11impl.jar delivered for Java 8.0
    is: build-127
    .
    This APAR will be fixed in the following Java Releases:
       8    SR6 FP25  (8.0.6.25)
       7    SR10 FP80 (7.0.10.80)
       7 R1 SR4 FP80  (7.1.4.80)
    .
    Contact your IBM Product's Service Team for these Service
    Refreshes and Fix Packs.
    For those running stand-alone, information about the available
    Service Refreshes and Fix Packs can be found at:
               https://www.ibm.com/developerworks/java/jdk/
    

Temporary fix

Comments

APAR Information

  • APAR number

    IJ28792

  • Reported component name

    SECURITY

  • Reported component ID

    620700125

  • Reported release

    270

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2020-10-16

  • Closed date

    2020-10-20

  • Last modified date

    2020-10-20

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    SECURITY

  • Fixed component ID

    620700125

Applicable component levels

[{"Line of Business":{"code":"LOB36","label":"IBM Automation"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSNVBF","label":"Runtimes for Java Technology"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"270"}]

Document Information

Modified date:
21 October 2020