diff --git a/jetty-util/src/main/java/org/eclipse/jetty/util/ssl/SslContextFactory.java b/jetty-util/src/main/java/org/eclipse/jetty/util/ssl/SslContextFactory.java index 8f9f0b9f342..871b656c546 100644 --- a/jetty-util/src/main/java/org/eclipse/jetty/util/ssl/SslContextFactory.java +++ b/jetty-util/src/main/java/org/eclipse/jetty/util/ssl/SslContextFactory.java @@ -344,6 +344,10 @@ public class SslContextFactory extends AbstractLifeCycle implements Dumpable try { + /* Use a pristine SSLEngine (not one from this SslContextFactory). + * This will allow for proper detection and identification + * of JRE/lib/security/java.security level disabled features + */ SSLEngine sslEngine = SSLContext.getDefault().createSSLEngine(); List selections = new ArrayList<>();