On Fri, May 03, 2002 at 09:09:01AM -0600, James Yonan wrote:
> > > So, I need to know the process of integration of new cipher to Crypto
> > > library.
> > > I've tried to place the directory with new cipher (aes) inside of the
> crypto
> > > directory,
> > > modified root Makefile.ssl and crypto/Makefile.ssl however it seems that
> it
> > > is not enough -
> > > new codec does not appear in the list of supported codecs of openvpn
> > > executable.
> >
> > Ask the author, James Yonan, he is around on this list.
> > And with him around asking about EVP-problems I am would guess that
> > he already nailed down the problem with 0.9.7.
> 
> OpenVPN uses the cipher-independent EVP layer of OpenSSL as an interface to
> the symmetric cipher algorithms.  In the current 0.9.7 snapshot, the EVP API
> has been modified so it is incompatible with 0.9.6 -- this is probably the
> cause of the crash.  I had the same result when I tried to test OpenVPN with
> 0.9.7 and AES-256.  I know there's some discussion going on about fixing
> this, so the EVP API stays compatible.
> 
> If you need something right now, I have a simple patch for 0.9.7 which will
> restore the 0.9.6 EVP behavior.  When I applied this patch, OpenVPN ran fine
> with 0.9.7 and the AES-256 cipher.

The following statement is not an official announcement:
* We intended to put 0.9.7 into beta this week. We failed to keep this
  schedule.
* Nevertheless 0.9.7 beta is due in the next days and a treatment of the
  problem will be included, most likely the old behaviour will be restored.
So I would simply recommed to stay patient for the next hours/days.

I didn't want to speak up before we have agreed on an official position
(and my statement here still has a (quite) small risk of being wrong),
but as discussion here becomes that intensive, I felt obligued to give
a statement.

Best regards,
        Lutz
-- 
Lutz Jaenicke                             [EMAIL PROTECTED]
http://www.aet.TU-Cottbus.DE/personen/jaenicke/
BTU Cottbus, Allgemeine Elektrotechnik
Universitaetsplatz 3-4, D-03044 Cottbus
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to