I wouldn't advise spending any more time on this. I've been looking into it more and it the most natural soltuion is an extension to the EVP_PKEY_ASN1_METHOD structure which I'm currently working on (that should support some other features too).
Unless I get some major distractions I should be able to get PSS verify functionality in place sometime this week. I also want to add PSS signature generation functionality but that will take a bit longer. CMS support for PSS would be nice too but I don't have any examples of PSS signed messages. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org ______________________________________________________________________ OpenSSL Project http://www.openssl.org Development Mailing List openssl-dev@openssl.org Automated List Manager majord...@openssl.org