>>> On 2/14/2011 at 03:08 PM, Rogério Soares<[email protected]> wrote: > Mark, i already did it too.. > > jbsp124:~ # openssl engine > (dynamic) Dynamic engine loading support > (ibmca) Ibmca hardware engine support > jbsp124:~ # > jbsp124:~ # > jbsp124:~ # rpm -qa | grep openss > openssl-devel-0.9.8a-18.36 > openssl-0.9.8a-18.36 > openssh-askpass-4.2p1-18.40.35 > openssl-ibmca-1.0.0-7.16 > compat-openssl097g-0.9.7g-13.16 > openssh-4.2p1-18.40.35 > > on sshd server the only change is enable --ssl-engine ?
You need to have a version of openSSH with the patch that actually enables the use of SSL. In the IBM paper, they were working with an modified version of openssh-5.1p1. I doubt very much that a copy of the 4.2p1 source is going to have that. Mark Post ---------------------------------------------------------------------- For LINUX-390 subscribe / signoff / archive access instructions, send email to [email protected] with the message: INFO LINUX-390 or visit http://www.marist.edu/htbin/wlvindex?LINUX-390 ---------------------------------------------------------------------- For more information on Linux on System z, visit http://wiki.linuxvm.org/
