提交 84244570 编写于 作者: R robm

8168861: AnchorCertificates uses hardcoded password for cacerts keystore

Reviewed-by: ascarpino
上级 4e28640c
...@@ -56,7 +56,7 @@ public class AnchorCertificates { ...@@ -56,7 +56,7 @@ public class AnchorCertificates {
try { try {
cacerts = KeyStore.getInstance("JKS"); cacerts = KeyStore.getInstance("JKS");
try (FileInputStream fis = new FileInputStream(f)) { try (FileInputStream fis = new FileInputStream(f)) {
cacerts.load(fis, "changeit".toCharArray()); cacerts.load(fis, null);
certs = new HashSet<>(); certs = new HashSet<>();
Enumeration<String> list = cacerts.aliases(); Enumeration<String> list = cacerts.aliases();
String alias; String alias;
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册