3 ms·
> A lot of people currently use alternative HTTP libraries anyways. True, but because ALPN is only available in Java 9 the only ways to offer HTTP/2 is either
by needusername 10y ago
> A lot of people currently use alternative HTTP libraries anyways.
True, but because ALPN is only available in Java 9 the only ways to offer HTTP/2 is either through horrible hacks or using OpenSSL.
- wbl 10y agoI believe Bouncycastle supports it, but am not sure. Java crypto has lagged for years for the residual effects of legal restrictions.
- needusername 10y ago> I believe Bouncycastle supports it, but am not sure. Yeah I know Jetty, Tomcat and Undertow all support it. But they are either terrible hacks or bypass Java crypto entirely. See https://www.youtube.com/watch?v=1I2Uo_HfmGU https://www.youtube.com/watch?v=1I2Uo_HfmGU > Java crypto has lagged for years for the residual effects of legal restrictions. Nope, long keys were (and still are) are disabled per default. It is and always was just a config change. I agree with you that's is lagging a bit (e.g. TLS 1.3 will likely have to wait for Java 10 or later) but legal restrictions are not the cause.