----- Forwarded message from NortonNg <[EMAIL PROTECTED]> -----
From: NortonNg <[EMAIL PROTECTED]>
Subject: openssl pkcs7 not compatible with Netscape & OutLook express??
To: [EMAIL PROTECTED]
Date: Fri, 16 Jul 1999 11:43:05 +0800 (CST)
Hello,
i am trying to use openssl to generate a pkcs7 object.
the command i use is ./enc -k server.pem test.txt
./dec -k server.pem test.p7m
but, i found that openssl pkcs7 object format is not compatible with
netscape messager and ms outlook express5 pkcs7 object.
I have success to use crypto/pkcs7/dec.c to decrypt those pkcs7 object( .p7m
attactment), but i can't generate an identical pkcs7 object from the plain text
that i have decrypted.
that mean..
outlook express5 generated pkcs7 object: org.p7m
crypto/pkcs7/dec.c decrypt org.p7m ==> org.txt -- success!!
crypto/pkcs7/enc.c encrypt org.txt ==> org2.p7m -- ok.
but org.p7m != org2.p7m , why????
but dec( org.p7m ) == dec(org2.p7m) !!!!
i attached two pkcs7 object file, those generate the same plaintext, but
these two pkcs7 object file is not identical file. why?????
//this is my server.pem , it is used by enc.c and dec.c
subject=/O=British Telecommunications plc/OU=BT Trustwise - Class 1 Individual
CA/OU=www.trustwise.com/repository/RP Incorp. by Ref.,LIAB.LTD(c)98/OU=Persona Not
Validated/OU=Digital ID Class 1 - Netscape/CN=Norton [EMAIL PROTECTED]
issuer= /O=British Telecommunications plc/OU=BT Trustwise - Class 1 Individual CA
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7e:28:27:28:a9:15:c0:04:cc:3e:d1:72:0a:38:d8:a9
Signature Algorithm: md5WithRSAEncryption
Issuer: O=British Telecommunications plc, OU=BT Trustwise - Class 1 Individual
CA
Validity
Not Before: Jul 6 00:00:00 1999 GMT
Not After : Sep 4 23:59:59 1999 GMT
Subject: O=British Telecommunications plc, OU=BT Trustwise - Class 1
Individual CA, OU=www.trustwise.com/repository/RP Incorp. by Ref.,LIAB.LTD(c)98,
OU=Persona Not Validated, OU=Digital ID Class 1 - Netscape, CN=Norton
[EMAIL PROTECTED]
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (512 bit)
Modulus (512 bit):
00:c4:8f:65:7d:e2:bf:e8:90:a4:6c:77:c1:cb:ed:
41:2d:47:e7:9f:a4:6a:45:da:f4:77:08:84:17:2a:
07:2e:a0:2c:04:53:d6:61:dc:3d:69:88:39:09:a9:
d2:22:94:4b:7b:7b:90:43:ac:0e:01:5e:6d:0f:f0:
24:b0:ef:71:0d
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
0.
Netscape Cert Type:
....
2.16.840.1.113733.1.6.3:
.vd4652bd63f2047029298763c9d2f275069c7359bed1b059da75bc4bc9701747da5c1e3141beadb2bd2e89206bd68f1d711489ca0bb45f8f3ea45db
Signature Algorithm: md5WithRSAEncryption
90:93:ae:cf:d5:8f:9b:53:d5:d3:44:32:1b:66:54:98:f0:f0:
b3:b1:e1:70:b0:ad:c0:f2:5b:2b:94:11:13:0e:bf:a8:4a:b5:
e3:1e:78:82:f0:10:a4:7f:5b:19:c4:b1:89:88:59:ff:7c:13:
fa:dd:1d:2a:6b:cf:e2:9a:8f:16:e3:e1:89:6c:7c:62:09:eb:
a8:28:ff:7f:54:b7:0a:9b:cf:75:8a:63:d9:a2:14:dc:70:70:
61:5a:06:51:33:50:af:a4:cf:90:6c:7e:5e:28:5d:88:22:d2:
4c:58:42:bc:2c:c3:a8:ca:04:57:03:21:f3:6b:66:82:2e:66:
ff:d7
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN RSA PRIVATE KEY-----
MIIBOQIBAAJBAMSPZX3iv+iQpGx3wcvtQS1H55+kakXa9HcIhBcqBy6gLART1mHc
PWmIOQmp0iKUS3t7kEOsDgFebQ/wJLDvcQ0CAwEAAQJAYaPFy7nWkMVBGCyJFS7f
AIpGcdPvgpHYfES7sPIMrUi9wohXHRfkGG3f+grHc4QEKfDwrfW/tMshEA6j9bKt
QQIhAPSXjzCnrQr92siGvqBVrH/xvw+rR3ko97ZOe/uABwo9AiEAzbpVhYO2i0Ti
8r3LqFWQRIcoADz/o4nEMJfTe8ep/xECIENn5TlGbGTkEsBCihRLqA9Wgw4BaOAW
DzY5qOdloAsNAiBvzkGmQxPVEoYIiE+DV6UFKTL7FiuUlE20Xv8HeVaREQIgRrV7
BW9gd3K6Uf5NhdP8d2pUQOtB+f5fE1qL98zDECA=
-----END RSA PRIVATE KEY-----
//----------------------------------------------------------------------
//This pkcs7 object is producted by Outlook Express 5,
// i add the PEM line "-----BEGIN PKCS7-----" and "-----END PKCS7-----".
-----BEGIN PKCS7-----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-----END PKCS7-----
//this is generated by crypto/pkcs7/enc.c , i use my server.pem certificate.
-----BEGIN PKCS7-----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-----END PKCS7-----
----- End forwarded message -----
______________________________________________________________________
OpenSSL Project http://www.openssl.org
Development Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]