openssl-users@openssl.org

2021-01-27 Thread Narayana, Sunil Kumar
Dear Openssl team, While migrating from 1.0.2 to 3.0 we observe that RSA_public_decrypt() API been deprecated in 3.0. We referred the example provided in man page but we are not clear in generating the initial 'key' required to create CTX. Please suggest on (key , eng) params to

RE: PKCS12 APIs with fips 3.0

2021-01-27 Thread Zeke Evans
That works. Thanks! -Original Message- From: openssl-users On Behalf Of Dr Paul Dale Sent: Tuesday, January 26, 2021 6:01 PM You could set the default property query to "?fips=yes". This will prefer FIPS algorithms over any others but will not prevent other algorithms from being

Re: Default value of a session resumption timeout (300 seconds vs 7200 seconds)

2021-01-27 Thread Matt Caswell
On 26/01/2021 18:13, Harish Kulkarni wrote: > Thank you both for bringing this to my attention, your points are > invaluable. > > If this is something which gets set from serverĀ on client side. can > client override this?. Can i change this to something less and try?. Has > anyone tried?. > >