Re: [openssl-dev] Submitting new bugs to rt via mail broken?

2015-02-23 Thread Lutz Jaenicke
On Mon, Feb 23, 2015 at 11:53:17AM +0100, Rainer Jung wrote: Am 10.02.2015 um 21:30 schrieb Matt Caswell: On 10/02/15 19:23, Rainer Jung wrote: Hello everyone, I sent a mail to r...@openssl.org 3 days ago, subject OpenSSL 1.0.2 make test bus error in evp_test (Solaris 10 Sparc, sun4u).

Re: [PATCH] Advance to the next state variant when reusing messages

2014-11-10 Thread Lutz Jaenicke
On Mon, Nov 10, 2014, Piotr Sikora wrote: (for some reason it was never received by rt@, so resending here) Slipped through the moderation queue, sorry. It is in RT now. Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org

OpenSSL mail server issues

2013-12-04 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! Due to a misunderstanding within the OpenSSL team we ran into trouble with our mail and mailing service still hosted at the old server (hopefully I will be able to complete the migration to the new server over the Christmas break). Caused by a

OpenSSL server downtime

2013-03-15 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! The new server currently hosting the www, git, rt, ftp, and cvs services is going to be moved within the installation of our hoster. As a consequence, the system will be assigned a new IP address. Old: 178.16.220.54 New: 185.9.166.106 The

[openssl.org #2992] [PATCH] Fix POD errors to stop make install_docs dying with pod2man 2.5.0+

2013-02-15 Thread Lutz Jaenicke via RT
Applied. Thanks, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

Re: access to git repository from behind a proxy

2013-02-11 Thread Lutz Jaenicke
On 02/07/2013 03:35 PM, Vladimir Kotal wrote: Hi all, I am trying to follow the steps for cloning the git repository found on http://www.openssl.org/source/repos.html from behind a proxy. The proxy does not allow connections to the git port 9418. I tried http/https which both fail:

OpenSSL infrastructure migration

2013-01-15 Thread Lutz Jaenicke
Hi! As you will already have noted, the OpenSSL project is currently moving its infrastructure to a new server. This migration is combined with a change and/or upgrade of the tools (CVS - GIT, RT 3.x - 4.x, ...) so we have decided to set up the new server first and to perform a step by step

Re: OpenSSL infrastructure migration

2013-01-15 Thread Lutz Jaenicke
On 01/15/2013 12:50 PM, Lutz Jaenicke wrote: Hi! As you will already have noted, the OpenSSL project is currently moving its infrastructure to a new server. This migration is combined with a change and/or upgrade of the tools (CVS - GIT, RT 3.x - 4.x, ...) so we have decided to set up

Re: OpenSSL infrastructure migration

2013-01-15 Thread Lutz Jaenicke
On 01/15/2013 12:50 PM, Lutz Jaenicke wrote: Hi! As you will already have noted, the OpenSSL project is currently moving its infrastructure to a new server. This migration is combined with a change and/or upgrade of the tools (CVS - GIT, RT 3.x - 4.x, ...) so we have decided to set up

Re: Committing to openSSL - maximum fragment length

2013-01-15 Thread Lutz Jaenicke
On 01/12/2013 01:26 PM, Attila Gulyas wrote: Hi, I have been working on implementing Maximm fragmentation length extension (RFC3546, obsoleted by RFC6066) and I'd like to commit my work so that it'd be available in later editions of openssl. How may I do that? (I've been looking for an

[openssl.org #2952] Testing new RT instance

2013-01-10 Thread Lutz Jaenicke via RT
This is a test of the upgraded RT for openssl.org Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated

OpenSSL RT instance migration

2013-01-10 Thread Lutz Jaenicke
Hi, in the process of upgrading and migrating our server infrastructure I have just put the updated Request Tracker into operation. The request tracker stays reachable via r...@openssl.org (or the alias openssl-b...@openssl.org). While the migration is still in progress, the web interface is

openssl.org web site certificate renewed

2011-08-30 Thread Lutz Jaenicke
Hi! I have just installed a new 3 year wildcard *.openssl.org certificate to our web site. Thanks to GlobalSign for the new donation. The migration should work more or less unnoted for the users. If you experience any problems please drop me a message. Best regards, Lutz

Re: Is RT not accepting patches?

2011-04-12 Thread Lutz Jaenicke
On 04/11/2011 11:10 PM, Tim Jackson wrote: Hi, I sent several patches to openssl-b...@openssl.org a few hours ago, but I haven't seen them get forwarded to this list and don't see them at http://rt.openssl.org/NoAuth/Buglist.html. Is this expected? Does openssl-bugs still work, or do all

OpenSSL server failure

2011-02-08 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! unfortunately the OpenSSL project has been hit by a hardware defect (hard disk and power supply). The project hence had to be migrated to a different server using a later version of the operating system and tools. Services are currently being

Re: How can I upload that .chm file?

2010-09-20 Thread Lutz Jaenicke
Harold S. Henry wrote: Thanks, Kyle. The problem, as identified in the delivery failure message, is that openssl.org's mail server has a fixed message-size limit that is exceeded by the size of the attachment. Sorry to be unclear. Your contribution has been filed under #2342... but the

Re: How can I upload that .chm file?

2010-09-20 Thread Lutz Jaenicke
Kenneth Robinette wrote: Lutz How does one get access to the contributed .chm file? I looked on the OpenSSL site and cannot see any reference to it? On the bottom of the descriptive test, right hand side, there should be a small reference to OpenSSL.zip. Best regards, Lutz

Re: Version control

2010-05-29 Thread Lutz Jaenicke
Am 28.05.2010 23:08, schrieb David Woodhouse: On Fri, 2010-05-28 at 10:14 +0200, Lutz Jaenicke wrote: The state of the test-repository is a bit old (approx one year) but you may have a look into git://login.openssl.org/openssl http://www.openssl.org/gitweb.cgi/ When the initial

Re: Version control

2010-05-28 Thread Lutz Jaenicke
Am 27.05.2010 18:48, schrieb David Woodhouse: On Thu, 2010-05-27 at 17:51 +0200, Lutz Jaenicke wrote: David Woodhouse wrote: On Wed, 2010-05-26 at 21:32 +0200, Ger Hobbelt wrote: Those [i_a] bits are my markers in our local code base so I know which edits are mine when

Re: Version control

2010-05-27 Thread Lutz Jaenicke
David Woodhouse wrote: On Wed, 2010-05-26 at 21:32 +0200, Ger Hobbelt wrote: Those [i_a] bits are my markers in our local code base so I know which edits are mine when doing a (manual) merge with 'vanilla' CVS HEAD. Yes, I know there are smarter systems around, but I've been 'tracking'

[openssl.org #2191] openSSL-0.9.8m make failure

2010-03-10 Thread Lutz Jaenicke via RT
From: Michael Wodei wo...@us.ibm.com Date: Wed, 10 Mar 2010 04:33:24 -0700 You can withdraw this one, I found the issue Mike Wodei __ OpenSSL Project http://www.openssl.org Development Mailing

OpenSSL server problems

2010-03-09 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! In the past few days we had some problems with the hardware of the OpenSSL server providing the public services (web, mail, etc). We are now closely monitoring the system and preparing to migrate to another server if necessary. Thank you very

Re: Test of disabled renegotiation in 0.9.8l

2009-11-12 Thread Lutz Jaenicke
Boyle Owen wrote: PPS: Although I have subscribed to this list, I am not getting the mails (I have to keep checking the archives). Is there anyone who can check out my account? Hmm. If memory serves me right there was a subscribe message sent to the list instead of the mailing list

Re: [PATCH 00/14] Patches from the ocf-linux and uClinux-dist projects

2009-06-30 Thread Lutz Jaenicke
David McCullough wrote: Jivin Kyle Hamilton lays it down ... Please mail these each as attachments to r...@openssl.org. This will ensure that each gets entered into a trackable state, and also ensures that the formatting for the patch files stays consistent. No problems, I wasn't

[openssl.org #1786] 0.9.9 HEAD: X509_POLICY_DATA/NODE function implementations missing - fix included

2009-04-14 Thread Lutz Jaenicke via RT
Closing as resolved. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

Re: I hope the reports that I sent to -bugs are useful...

2009-04-01 Thread Lutz Jaenicke
Kyle Hamilton wrote: I hope the test reports I sent to -bugs are useful. I'm on a Mac OSX 10.5.6 machine, Intel-based, and I ran tests in both 32 and 64 bit modes, both without and with the optional features. I do not have gmp installed, nor zlib, so I cannot vouch for their usability; I did

Re: I hope the reports that I sent to -bugs are useful...

2009-04-01 Thread Lutz Jaenicke
Kyle Hamilton wrote: On Wed, Apr 1, 2009 at 4:55 AM, Lutz Jaenicke l...@lutz-jaenicke.de wrote: Hi Kyle, thank you very much for reports, they are currently sitting in the moderation queue. I would kindly ask you and other testers to either * send success messages to the list with just

Re: Can not mail to r...@openssl.org.

2009-03-08 Thread Lutz Jaenicke
Jurko Gospodnetić wrote: Hi all. Just wandering whether there is something I am missing about posting bug reports/patches to 'r...@openssl.org'. I send a report there three days ago and got neither any confirmation nor did the report get forwarded to the development list. I resent the

[openssl.org #1787] [PATCH] speed -multi buffered output fix

2008-12-10 Thread Lutz Jaenicke via RT
Thanks, patch applied. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #1761] [PATCH] AWOL openssl s_client eating CPU time.

2008-10-22 Thread Lutz Jaenicke via RT
Patch applied. Thanks, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #1764] openssl-0.9.8i random generator bug

2008-10-22 Thread Lutz Jaenicke via RT
[EMAIL PROTECTED] - Tue Oct 21 14:23:50 2008]: Hello rt, During stress testing my project, suddenly got crash inside openssl openssl version - openssl-0.9.8i compiler - Microsoft Visual Studio 2008 Professional Edition (C++ project) project - x64 debug compilation OS -

Re: [openssl.org #1703] Bug report for DTLS

2008-10-14 Thread Lutz Jaenicke
David Woodhouse wrote: On Mon, 2008-10-13 at 09:01 +0200, Lutz Jaenicke via RT wrote: Note: I have reverted the DTLS1_BAD_VER part as DTLS1_BAD_VER handling is not present in HEAD (0.9.9). That makes sense. I assume that DTLS1_BAD_VER handling wasn't added to HEAD because the pre

[openssl.org #1752] DTLS drops incoming packets when they are reordered.

2008-10-13 Thread Lutz Jaenicke via RT
From answer only sent to mailing list: Yeah, it looks right. I haven't yet got it working with my test case, because I need to use DTLS1_BAD_VER and there are other parts missing from HEAD for that, on top of my patch in #1751 -- but I agree with your assessment that it shouldn't be needed any

[openssl.org #1703] Bug report for DTLS

2008-10-13 Thread Lutz Jaenicke via RT
[jaenicke - Fri Oct 10 12:42:51 2008]: I have applied the patch to 0.9.8-stable and adopted it to 0.9.9-dev. I am not very familiar with the DTLS implementation so hopefully I did not break it. Note: I have reverted the DTLS1_BAD_VER part as DTLS1_BAD_VER handling is not present in HEAD

[openssl.org #1703] Bug report for DTLS

2008-10-10 Thread Lutz Jaenicke via RT
I have applied the patch to 0.9.8-stable and adopted it to 0.9.9-dev. I am not very familiar with the DTLS implementation so hopefully I did not break it. Best regards, Lutz __ OpenSSL Project

[openssl.org #1752] DTLS drops incoming packets when they are reordered.

2008-10-10 Thread Lutz Jaenicke via RT
[EMAIL PROTECTED] - Tue Oct 07 10:57:04 2008]: This patch to the 0.9.8 branch fixes two bugs with misordered incoming packets in DTLS, which are reported as RT #1752. Could you comment on the 0.9.9-dev branch as well? The patch to d1_pkt.c applies fine. The length object is gone from the

Re: [openssl.org #1752] DTLS drops incoming packets when they are reordered.

2008-10-06 Thread Lutz Jaenicke
David Woodhouse via RT wrote: (Was waiting for the RT to autoreply with a number before I followed up, but it doesn't seem to have arrived after half an hour, so I'll send anyway. Hopefully the References: header will associate this with the previous mail anyway...) Mailings to rt are

[openssl.org #1757] Compile crash on IA64 due to crypto/sha/Makefile problem

2008-10-06 Thread Lutz Jaenicke via RT
Thanks, I have applied the respective patch to the 0.9.7, 0.9.8 and 0.9.9 branches, see http://cvs.openssl.org/rlog?f=openssl/crypto/sha/Makefile for commits 17496 to 17498. Best regards, Lutz __ OpenSSL Project

OpenSSL Web Server Certificate renewed

2008-09-12 Thread Lutz Jaenicke
Hi! I have just installed a new (2048bit) certificate and key to the OpenSSL Project webserver. It is a wildcard certifcate for *.openssl.org catching both www.openssl.org and rt.openssl.org. Many thanks go to Steve Roylance from Globalsign for donating a 3 year wildcard SSL certificate!! Best

[openssl.org #1727] No License error getting

2008-08-06 Thread Lutz Jaenicke via RT
It seems you do not have enough licenses for your C compiler which is thus locking up. Sincere regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List

[openssl.org #1728] Root Certificate Program

2008-08-06 Thread Lutz Jaenicke via RT
The OpenSSL project does not have a root CA program and has decided to not supply root CA certificates with the toolkit. Please checkout the FAQ: How can I set up a bundle of commercial root CA certificates? http://www.openssl.org/support/faq.html#USER16 Best regards, Lutz

Re: non-blocking SSL_read() API problem

2008-08-01 Thread Lutz Jaenicke
Thor Lancelot Simon wrote: I think I've discovered another problem with the current non-blocking API. I have an application which reads data into fixed-size buffers which it maintains per session. It uses non-blocking IO and select() when a read returns SSL_ERROR_WANT_{READ,WRITE}. To

Re: non-blocking SSL_read() API problem

2008-08-01 Thread Lutz Jaenicke
Thor Lancelot Simon wrote: On Fri, Aug 01, 2008 at 03:49:01PM +0200, Lutz Jaenicke wrote: Thor Lancelot Simon wrote: The record size of the SSL record is predetermined by the sender with 16k being the maximum size specified by the protocol. 32K for SSLv2, no? I stopped caring

[openssl.org #1260] [REQ] Include this root certificate with openssl sources

2008-05-23 Thread Lutz Jaenicke via RT
The OpenSSL distribution as of 0.9.8h is no longer shipped with any root CA certificates. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List

[openssl.org #1645] Ehancement - The addition of GlobalSigns Roots into the default openSSL rootstore

2008-05-23 Thread Lutz Jaenicke via RT
The OpenSSL distribution as of 0.9.8h is no longer shipped with any root CA certificates. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List

[openssl.org #1513] Bug : SSL_CTX_use_certificate_chain_file fails due to earlier errors

2008-05-23 Thread Lutz Jaenicke via RT
Respective patch applied, thanks. The fix will be in 0.9.8h. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org

[openssl.org #1417] enhancement request: FAQ

2008-05-23 Thread Lutz Jaenicke via RT
Issue resolved by code modification, see ticket #1513. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org

Re: valgrind and openssl

2008-05-16 Thread Lutz Jaenicke
Bodo Moeller wrote: However, another intentional use of potentially unitialized data is still left as of http://cvs.openssl.org/getfile/openssl/crypto/rand/randfile.c?v=1.47.2.2 : i=fread(buf,1,n,in); if (i = 0) break; /* even if n != i, use the

Re: Will this change causes lock up?

2008-04-18 Thread Lutz Jaenicke
Zhichao Hong wrote: I have sent email about a client hangs when trying to communicating with server using 0.9.7e version of the openssl. When looking into the debugger stack trace, the ssl3_read_n blocks forever in the s3_pkt.c. When I browsed the cvs change history, the following issue was

[openssl.org #1609] openssl-0.9.8g - Bug report and maybe simple patch

2008-04-18 Thread Lutz Jaenicke via RT
The missing defitions have been added. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

Re: Will this change causes lock up?

2008-04-18 Thread Lutz Jaenicke
Zhichao Hong wrote: Thank you, Lutz, for the change set information! I have to admit that I am not a power user of the openssl at the source level. We are not controlling the server as it is a standard IIS HTTPS. The software is using openssl library on top of openbsd stack. So do you

[openssl.org #1552] mingw patch for openssl-0.9.8e

2008-04-17 Thread Lutz Jaenicke via RT
I have applied both the patch from Roumen Petrov and the Fixup from Alon Bar-Lev. I don't have a mingw environment to actually verify the correct operation. Please check out the next snapshot and verify that everything is working now as expected. Best regards, Lutz

[openssl.org #1451] Re: PATCH (Re: Cross compile OpenSSL in Linux using MinGW32)

2008-04-17 Thread Lutz Jaenicke via RT
Closing as well according to #1552 __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #1659] NULL pointer dereference in rsautl bug and patch

2008-04-17 Thread Lutz Jaenicke via RT
I have applied a different modification which is a little bit more in line with the handling in other applications (where the handling seems to be correct). http://cvs.openssl.org/chngview?cn=17067 Best regards, Lutz __

[openssl.org #1607] Bug in openssl - file apps.c

2008-04-17 Thread Lutz Jaenicke via RT
Thanks, fixed in http://cvs.openssl.org/chngview?cn=17069 (0.9.8-stable) http://cvs.openssl.org/chngview?cn=17068 (HEAD) Best regards, Lutz __ OpenSSL Project http://www.openssl.org

[openssl.org #1660] Request for feature, all Windows systems, all OpenSSL versions.

2008-04-16 Thread Lutz Jaenicke via RT
I agree with Shaw Graham George's post on openssl-dev. Modifying system settings upon installation would seem to be too intrusive for the OpenSSL source package. OpenSSL as distributed by the OpenSSL team does not modify system settings during installation on any platform. Typically integrators

Re: 64 bits computer always returns the same salt

2008-04-16 Thread Lutz Jaenicke
David Erosa García wrote: Hello all. I tried the openssl-users list but I think this may be a question for the devel list: I'm doing my homework about openssl, but *this question has nothing to do with it*. It's just a doubt that arised while doing it. There is one exercise with the

Re: [openssl.org #1663] bug report openssl-0.9.8g on Windows XP

2008-04-16 Thread Lutz Jaenicke via RT
Andrew Lamoureux via RT wrote: Hi, I'd like to report a bug in openssl-0.9.8g compiled with Visual Studio. OS is Windows XP. Access violation occurs when BN_rshift() is used on a BIGNUM whose bit length is less (amount required varies) than the number of bits requesting to be shifted.

[openssl.org #1662] key generation creates world-readable keys by default

2008-04-16 Thread Lutz Jaenicke via RT
OpenSSL does create keys in more components than just gen(r|d)sa. In none of these functions any file permission mask is used. All of the components in openssl/apps are using the file-BIO which behaves like stdio and does not have idea about file permissions. People using OpenSSL to generate their

[openssl.org #1661] README file references a non-existing URL

2008-04-07 Thread Lutz Jaenicke via RT
That is indeed true. I have migrated RT quite a lot of time ago but did miss the obvious references in the process. * fixed the URI in the respective files for future releases * added a redirection at the URI provided to the new page Best regards, Lutz

[openssl.org #1641] [Patch] uninitialized variable in bn_mont.c

2008-02-28 Thread Lutz Jaenicke via RT
Closing according to respective email on [EMAIL PROTECTED] Hi, a couple of days ago I've reported the bug: http://rt.openssl.org/Ticket/Display.html?id=1641 It looks like that Bodo's commit (see below) has fixed the reported problem. So the bug can be closed and set to fixed. Best regards,

Re: Minor bug in verify manpage

2008-01-31 Thread Lutz Jaenicke
Richard Hartmann wrote: Hi all, 3 X509_V_ERR_UNABLE_TO_GET_CRL unable to get certificate CRL should read 3 X509_V_ERR_UNABLE_TO_GET_CRL: unable to get certificate CRL i.e. there is a colon missing. If there is any interest, I can create a patch but it is probably faster for both sides if

Re: Administrivia and seasons greetings

2008-01-05 Thread Lutz Jaenicke
Guenter Knauf wrote: Hi Lutz, Replies to active tickets are handled automatically. I've a ticket open where I posted a couple of times updates: http://rt.openssl.org/index.html?q=1611 but nothing of these appear here on the list - although they are properly listed with #1611... can

Re: Display the CRL number w/o -text [patch included]

2007-12-19 Thread Lutz Jaenicke
Bruno Bonfils wrote: Hi openssl's people, I'm currently writing a script to check a PKI. For this purpose, I wrote a small patch to display the crlNumber directly from the crl's app: # openssl crl -in ca.crl -crlnumber -noout crlNumber=42 I'll happy if the patch can be include in

Re: powerpcc64 debian and -DOPENSSL_USE_GMP -lgmp

2007-12-04 Thread Lutz Jaenicke
Robert Gries wrote: Well even though I get the error about the shared libraries, it did work with is Configure: ./Configure --prefix=~gries/usr/local/ssl --openssldir=~gries/usr/local/ssl threads linux-ppc64 -m64 -L/usr/local/lib -DOPENSSL_USE_GMP -lgmp -static [EMAIL

Re: Please add OIDs for CMP and CRMF to objects.txt

2007-11-01 Thread Lutz Jaenicke
Martin Peylo wrote: Hi, could the following OIDs please be added to the objects.txt file? They are used by CMP (RFC 4210) and CRMF (RFC 4211) which I am implementing right now. This would make it easier for me to supply a patch which applies cleanly in case the objects.txt file was changed

[openssl.org #1594] 0.9.8f build problem on HP-UX 11.23 ia64

2007-10-19 Thread Lutz Jaenicke via RT
This should be fixed by commit http://cvs.openssl.org/chngview?cn=16682 Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List

[openssl.org #1590] OpenSSL 0.9.8f: bad SHA1, questionable PGP

2007-10-19 Thread Lutz Jaenicke via RT
The SHA1 was recreated and the tarball was resigned by myself. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List

[openssl.org #1589] OPENSSL_VERSION_NUMBER wrong in 0.9.8f release

2007-10-19 Thread Lutz Jaenicke via RT
[jaenicke - Fri Oct 19 11:39:05 2007]: This will never be fixed in the 0.9.8f tarball (as it was rolled as is). OpenSSL 0.9.8g has now been released using a correct version code. Best regards, Lutz __ OpenSSL

[openssl.org #1591] get_session_cb callback invoked with no previous session in 0.9.8f

2007-10-19 Thread Lutz Jaenicke via RT
Fixed in 0.9.8g __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager [EMAIL PROTECTED]

[ANNOUNCE] OpenSSL version 0.9.8g released

2007-10-19 Thread Lutz Jaenicke
OpenSSL version 0.9.8g released === OpenSSL - The Open Source toolkit for SSL/TLS http://www.openssl.org/ The OpenSSL project team is pleased to announce the release of version 0.9.8g of our open source toolkit for SSL/TLS. This new OpenSSL

[openssl.org #1589] OPENSSL_VERSION_NUMBER wrong in 0.9.8f release

2007-10-17 Thread Lutz Jaenicke via RT
Your statement is actually correct. Nevertheless it does not seem to be useful to create a new release (0.9.8g) just to correct an informational version number code. It also would not be a good idea to create a new tarball with the same name but just a new version number code. We have therefore

[openssl.org #1590] OpenSSL 0.9.8f: bad SHA1, questionable PGP

2007-10-17 Thread Lutz Jaenicke via RT
I have made the following modifications to the download area (not tracked by CVS, so the action is not logged via openssl-cvs) at Wed Oct 17, 2007, 09:30 CEST (07:30GMT): * updated openssl-0.9.8f.tar.gz.sha1 * created new openssl-0.9.8f.tar.gz.asc with my (Lutz Jaenicke) personal key matching

[openssl.org #1590] OpenSSL 0.9.8f: bad SHA1, questionable PGP

2007-10-17 Thread Lutz Jaenicke via RT
Grr. The OpenSSL web site is some (semi-)automatic thing that is updated in a magic way. Probably only Ralf Engelschall fully understands how this works :-) I have made sure the correct files are linked now. Best regards, Lutz

[openssl.org #1591] get_session_cb callback invoked with no previous session in 0.9.8f

2007-10-17 Thread Lutz Jaenicke via RT
[EMAIL PROTECTED] - Wed Oct 17 18:11:27 2007]: Starting with OpenSSL 0.9.8f, ssl3_get_client_hello() no longer tests whether the client proposed a previous session_id before trying to process it. In previous releases, a new session was always created if no previous session was proposed

[openssl.org #1578] [PATCH] fix is is typos

2007-09-24 Thread Lutz Jaenicke via RT
Applied, thanks. Best regards, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #521] [PATCH] Avoid uninitialized data in random buffer

2007-09-20 Thread Lutz Jaenicke via RT
A respective compile time macro PEDANTIC (to be added to the C flags as -DPEDANTIC) has been added for OpenSSL 0.9.8f. The behavior has been clarified in the manual page and the FAQ __ OpenSSL Project

Re: How to Submit a patch

2007-04-12 Thread Lutz Jaenicke
Nitin M wrote: Hi! Can anyone please tell me the correct way to submit a patch here, as I have never done that before on this list? As stated somewhere on the website: submit it by email to [EMAIL PROTECTED] Note: wrt SPAM protection this interface is moderated so there may be some delay(*)

Re: [patch] Valgrind complaining about unitialized data

2007-03-04 Thread Lutz Jaenicke
Ben Laurie schrieb: Lutz Jaenicke wrote: Lutz Jaenicke wrote: Peter Waltenberg wrote: Yes, it's desirable that that data is unknown however there is a compromise possible: Complement the area. It'll mean valgrind will only complain at the correct place, or possibly

Re: [patch] Valgrind complaining about unitialized data

2007-03-02 Thread Lutz Jaenicke
Peter Waltenberg wrote: Yes, it's desirable that that data is unknown however there is a compromise possible: Complement the area. It'll mean valgrind will only complain at the correct place, or possibly not at all, and it's still random. The performance hit from doing that will be so small

[openssl.org #1499] Uninitialized value in RAND_load_file, with -DPURIFY

2007-03-02 Thread Lutz Jaenicke via RT
Guessing on the stack being non-predictable does not seem to improve entropy too much to me. I have therefore modified the code to no longer use uninitialized memory in any case. Not relying on -DPURIFY will also make valgrind users happy :-) Best regards, Lutz

Re: STARTTLS patch for imap and ftp

2007-02-22 Thread Lutz Jaenicke
Goetz Babin-Ebell wrote: Lutz Jaenicke wrote: Goetz Babin-Ebell wrote: [...] * in SMTP doing a STARTTLS without previous EHLO will return a 503 STARTTLS command used when not advertised * in IMAP doing a STARTLS requires a . CAPABILITY first. In both cases the server

[openssl.org #1459] Bug in quoting string expressions

2007-02-21 Thread Lutz Jaenicke via RT
Patch applied. Thanks, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #1277] add support for m68k linux

2007-02-21 Thread Lutz Jaenicke via RT
Applied to openssl-0.9.8 and openssl-dev trees. __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

[openssl.org #1152] add support for Linux on SuperH

2007-02-21 Thread Lutz Jaenicke via RT
Applied to openssl-0.9.8 and openssl-dev. Thanks, Lutz __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager

Re: STARTTLS patch for imap and ftp

2007-02-21 Thread Lutz Jaenicke
Goetz Babin-Ebell wrote: Lutz Jaenicke wrote: Goetz Babin-Ebell wrote: [...] * in SMTP doing a STARTTLS without previous EHLO will return a 503 STARTTLS command used when not advertised * in IMAP doing a STARTLS requires a . CAPABILITY first. In both cases the server

Re: STARTTLS patch for imap and ftp

2007-02-21 Thread Lutz Jaenicke
Dr. Stephen Henson wrote: On Wed, Feb 21, 2007, Lutz Jaenicke wrote: Goetz Babin-Ebell wrote: Lutz Jaenicke wrote: Goetz Babin-Ebell wrote: [...] * in SMTP doing a STARTTLS without previous EHLO will return a 503 STARTTLS command used when

Re: STARTTLS patch for imap and ftp

2007-02-19 Thread Lutz Jaenicke
Goetz Babin-Ebell wrote: Hello Richard, Richard Levitte - VMS Whacker wrote: In message [EMAIL PROTECTED] on Thu, 15 Feb 2007 10:34:23 -0800, Kees Cook [EMAIL PROTECTED] said: kees 3 years ago, I wrote a patch[1] (and did the TSU[2]) for adding kees these features to s_client. Can

[Fwd: [openssl.org #1480]]

2007-02-07 Thread Lutz Jaenicke
RT access configuration has been changed. Best regards, Lutz ---BeginMessage--- This transaction appears to have no content __ OpenSSL Project http://www.openssl.org Development Mailing List

Re: OpenSSL request tracker downtime

2007-01-31 Thread Lutz Jaenicke
Lutz Jaenicke wrote: Lutz Jaenicke wrote: Hi! The OpenSSL request tracker will go down now for migration to a new version of RT and another host. All incoming email requests will be queued and will be uploaded once the new setup is finished. I will send another announcement once

[openssl.org #1469] Testing

2007-01-31 Thread Lutz Jaenicke via RT
Testing the new installation of RT for OpenSSL before declaring it live. __ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated

Re: [openssl.org #1469] Testing

2007-01-31 Thread Lutz Jaenicke via RT
Lutz Jaenicke via RT wrote: Testing the new installation of RT for OpenSSL before declaring it live. Testing the mail gateway before declaring it live. __ OpenSSL Project http

Re: [openssl.org #1469] Testing

2007-01-31 Thread Lutz Jaenicke via RT
Lutz Jaenicke via RT wrote: Testing the new installation of RT for OpenSSL before declaring it live. Testing the mail gateway before declaring it live. __ OpenSSL Project http

Re: OpenSSL request tracker downtime

2007-01-31 Thread Lutz Jaenicke
Lutz Jaenicke wrote: Lutz Jaenicke wrote: Lutz Jaenicke wrote: Hi! The OpenSSL request tracker will go down now for migration to a new version of RT and another host. All incoming email requests will be queued and will be uploaded once the new setup is finished. I will send

Re: [openssl.org #1469] Testing

2007-01-31 Thread Lutz Jaenicke via RT
Lutz Jaenicke via RT schrieb: Testing the new installation of RT for OpenSSL before declaring it live. Testing with modified settings. Duplicate emails to openssl-dev should now be gone. Hopefully... Best regards, Lutz

[EMAIL PROTECTED]: request for the source code....]

2007-01-27 Thread Lutz Jaenicke
- Here’s a new way to find what you're looking for - Yahoo! Answers - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] http://www.aet.TU-Cottbus.DE/personen/jaenicke/ BTU Cottbus, Allgemeine

OpenSSL request tracker downtime

2007-01-26 Thread Lutz Jaenicke
Hi! The OpenSSL request tracker will go down now for migration to a new version of RT and another host. All incoming email requests will be queued and will be uploaded once the new setup is finished. I will send another announcement once the request tracker is back up online. Best regards,

Re: OpenSSL request tracker downtime

2007-01-26 Thread Lutz Jaenicke
Lutz Jaenicke wrote: Hi! The OpenSSL request tracker will go down now for migration to a new version of RT and another host. All incoming email requests will be queued and will be uploaded once the new setup is finished. I will send another announcement once the request tracker is back up

[openssl.org #1459] Bug in quoting string expressions

2007-01-12 Thread Lutz Jaenicke via RT
The attached patch fixes an incorrect handling of special characters. Patch is against 0.9.8d. __ OpenSSL Project http://www.openssl.org Development Mailing List

Re: [openssl.org #1457] Error while building openssl on ppc64 with gcc...

2007-01-11 Thread Lutz Jaenicke via RT
Atul Kulkarni (SIGSEC) via RT wrote: That seems to be a bug with openssl dev package, as I am trying to build on a native ppc64 machine why should it add a -b directive asking for a cross-compilation machine. Please note my code compiles without it though! If there is any specific reason

  1   2   3   4   5   6   7   8   >