Re: [PATCH] cfi/fpo directives in md5 assembly code

2011-06-30 Thread yoni londner
I wasn't proposing that the other changes had to be done now --- just noting that the lack of unwind information seems to be a problem that most of the assembly files have. I think the extra registers' unwind info for the md5 asm is worth including now, though, since it's a tiny enhancement.

Re: Build Error on 1.0.1 with FIPS

2011-06-30 Thread Tyrel Haveman
We just noticed that building the fips module on Linux works fine with no-asm, but on a 64-bit Windows build, it doesn't work without no-asm. Here's the error: link /nologo /subsystem:console /opt:ref /debug /out:out32dll\fips_standalone_sha1.exe

Re: Question on DTLS server calling dtls_handle_timeout during protocol handshake.

2011-06-30 Thread Yogesh Chopra
Hi, Please look at the debug messages attached to the original message, These were printf's added in the DTLS code and these were messages captured on the server. We are seeing the server start a timer when it sends back a HelloVerifyRequest. Based on your comments below it appears that should

Re: [openssl.org #2549] [Bug report / Linux / openssl 0.9.8k-7ubuntu8.6] openssl s_client does not verify certificate against server's host name

2011-06-30 Thread Alain Knaff
On 27/06/11 11:54, Peter Sylvester via RT wrote: On 06/26/2011 08:05 PM, Peter Sylvester wrote: On 06/26/2011 02:59 PM, Alain Knaff via RT wrote: Hello, openssl s_client -connect hostname.domain.com:443 does not verify that the certificate matches the hostname. (i.e. hostname.domain.com

make openssl fips module on AIX

2011-06-30 Thread ailsa.sun
Hi All, I downloaded openssl-fips-1.2.3.tar.gzhttp://openssl.org/source/openssl-fips-1.2.3.tar.gz and try to build it on AIX 5.2. I configured it like this: ./Configure fipscanisterbuild aix-gcc --openssldir= /emc/suna1/build/openssl-fips-1.2.3. But when make, it came to the following issue.

[openssl.org #2550] [PATCH] DTLS HelloVerifyRequest Timer bug

2011-06-30 Thread Robin Seggelmann via RT
The server starts a timer when sending a HelloVerifyRequest, although its state should remain unchanged. Thanks to Yogesh Chopra for finding this bug! Best regards Robin --- ssl/d1_srvr.c 25 May 2011 14:29:55 - 1.20.2.18 +++ ssl/d1_srvr.c 27 Jun 2011 10:02:10 - @@

Re: Build Error on 1.0.1 with FIPS

2011-06-30 Thread Dr. Stephen Henson
On Thu, Jun 30, 2011, Tyrel Haveman wrote: We just noticed that building the fips module on Linux works fine with no-asm, but on a 64-bit Windows build, it doesn't work without no-asm. Here's the error: link /nologo /subsystem:console /opt:ref /debug

Re: Build Error on 1.0.1 with FIPS

2011-06-30 Thread Tyrel Haveman
Thanks Steve, but now it's running into this instead: Assembling: tmp32dll\x86_64cpuid.asm tmp32dll\x86_64cpuid.asm(9) : error A2008:syntax error : SEGMENT tmp32dll\x86_64cpuid.asm(12) : error A2008:syntax error : ENDS NMAKE : fatal error U1077: 'C:\Program Files (x86)\Microsoft Visual Studio

Re: Build Error on 1.0.1 with FIPS

2011-06-30 Thread Dr. Stephen Henson
On Thu, Jun 30, 2011, Tyrel Haveman wrote: Thanks Steve, but now it's running into this instead: Assembling: tmp32dll\x86_64cpuid.asm tmp32dll\x86_64cpuid.asm(9) : error A2008:syntax error : SEGMENT tmp32dll\x86_64cpuid.asm(12) : error A2008:syntax error : ENDS NMAKE : fatal error U1077:

Re: Question on DTLS server calling dtls_handle_timeout during protocol handshake.

2011-06-30 Thread Michael Tüxen
Hi Yogi, could you try the patch in http://rt.openssl.org/Ticket/Display.html?id=2550 and report if it fixes your issue? Best regards Michael On Jun 27, 2011, at 10:58 PM, Yogesh Chopra wrote: Hi, Please look at the debug messages attached to the original message, These were printf's added

Re: Build Error on 1.0.1 with FIPS

2011-06-30 Thread Tyrel Haveman
Ah, okay. We tried that out and the FIPS module does build great afterwards. But then, later, the 1.0.1 fips-capable build fails to build with this reasoning: nasm -f win64 -DNEAR -Ox -g -o tmp32dll\rc4-x86_64.obj tmp32dll\rc4-x86_ 64.asm tmp32dll\rc4-x86_64.asm:755: error: symbol