OpenSSL mail server issues

2013-12-04 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! Due to a misunderstanding within the OpenSSL team we ran into trouble with our mail and mailing service still hosted at the old server (hopefully I will be able to complete the migration to the new server over the Christmas break). Caused by a

[winlinke...@gmail.com: update openssl error]

2013-08-08 Thread Lutz Jaenicke
Forwarded to openssl-users for discussion. - Forwarded message from gate Bill winlinke...@gmail.com - Date: Tue, 6 Aug 2013 17:22:54 +0800 From: gate Bill winlinke...@gmail.com To: openssl-b...@openssl.org Subject: update openssl error hello my linux env: centos 6.4 x64

OpenSSL server downtime

2013-03-15 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! The new server currently hosting the www, git, rt, ftp, and cvs services is going to be moved within the installation of our hoster. As a consequence, the system will be assigned a new IP address. Old: 178.16.220.54 New: 185.9.166.106 The

Re: Dead indirect link to http://www.openssl.org in lucky 13 security advisory

2013-02-22 Thread Lutz Jaenicke
On 02/22/2013 04:13 PM, Jakob Bohm wrote: Att. openssl.org web server maintenance team. The latest security advisory for OpenSSL links to the research site for the lucky 13 attack analysis, which links to their report in pdf format. That report in its list of references includes a link to

Re: OpenSSL infrastructure migration

2013-01-26 Thread Lutz Jaenicke
On 01/25/2013 07:54 PM, Jakob Bohm wrote: The all-important download page http://www.openssl.org/source/ is no longer sorted properly. This may be due to the backend code relying on the implicit sorting in readdir() results for some file systems not happening with more recent file systems

Re: Web site: Send to Majordomo broken

2013-01-16 Thread Lutz Jaenicke
On 01/16/2013 03:29 PM, Memmott, Lester wrote: It appears that the web site went through a few changes recently and some aren't working quite right yet. Another case is on the FIPS page (http://www.openssl.org/docs/fips/) the link for the User Guide is also broken. Thanks, Lester

OpenSSL infrastructure migration

2013-01-15 Thread Lutz Jaenicke
Hi! As you will already have noted, the OpenSSL project is currently moving its infrastructure to a new server. This migration is combined with a change and/or upgrade of the tools (CVS - GIT, RT 3.x - 4.x, ...) so we have decided to set up the new server first and to perform a step by step

Re: OpenSSL infrastructure migration

2013-01-15 Thread Lutz Jaenicke
On 01/15/2013 12:50 PM, Lutz Jaenicke wrote: Hi! As you will already have noted, the OpenSSL project is currently moving its infrastructure to a new server. This migration is combined with a change and/or upgrade of the tools (CVS - GIT, RT 3.x - 4.x, ...) so we have decided to set up

OpenSSL RT instance migration

2013-01-10 Thread Lutz Jaenicke
Hi, in the process of upgrading and migrating our server infrastructure I have just put the updated Request Tracker into operation. The request tracker stays reachable via r...@openssl.org (or the alias openssl-b...@openssl.org). While the migration is still in progress, the web interface is

[FWD] Bug report

2012-10-15 Thread Lutz Jaenicke
Forwarded to openssl-users for discussion Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Hello There, We are facing an issue with OpenSSL. Please see the following description. Version

[FWD] problem about HW_Rand_Engine

2012-10-03 Thread Lutz Jaenicke
Forwarded to openssl-user for discussion. Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Hello, I have a problem about using HW_Rand Engine. Would you please give me some suggestion

[FWD] About SSL_connect error

2012-09-24 Thread Lutz Jaenicke
Forwarded to openssl-users for discussion Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Dear OpenSSL developers About the following source,I have 2 questions: 1.In OpenSSL library 0.9.8d

[FWD] BUG: base64

2012-06-29 Thread Lutz Jaenicke
Forwarded to openssl-users for public discussion Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- I found a possible bug with base64 decoding, the following block can't be decoded by openssl

Re: virus or hoax in test/asn1test.exe ?

2012-02-17 Thread Lutz Jaenicke
On 02/17/2012 12:29 PM, Jakob Bohm wrote: On 2/16/2012 11:42 PM, David H. Lipman wrote: From: Johan Samyn johan.sa...@gmail.com 48 hours later my replies have NOT made it to Gmane. Mark: 2/16/12 @ 1742 hrs I guess that would be 2012-02-16 17:42 -0500 aka 2012-02-16 22:42 UTC? It

[FWD] bug report

2012-01-24 Thread Lutz Jaenicke
Forwarded to openssl-users Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Hi, I can’t seem to run make on my Ubuntu machine. Have been trying with the openssl-1.0.0g.tar.gz I’ve also

[FWD] Crash in SSL_CTX_free() in OpenSSL 0.9.8e

2012-01-18 Thread Lutz Jaenicke
Forwarded to openssl-users for discussion. Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Hi, I am using SSL_CTX_free(ctx) call in our OpenHPI application and getting a crash

openssl.org web site certificate renewed

2011-08-30 Thread Lutz Jaenicke
Hi! I have just installed a new 3 year wildcard *.openssl.org certificate to our web site. Thanks to GlobalSign for the new donation. The migration should work more or less unnoted for the users. If you experience any problems please drop me a message. Best regards, Lutz

[FWD] Request for help in building the open ssl for embedded environment

2011-07-26 Thread Lutz Jaenicke
Forwarded to openssl-users for public discussion. Best regards, Lutz -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ ---BeginMessage--- Hi, We are trying to build the open ssl for the embedded environment on power pc processor

Re: Client Hello too large ?

2011-06-21 Thread Lutz Jaenicke
Am 21.06.2011 20:38, schrieb Alban Diquet: Yes, strange isn't it ? I guess it doesn't matter for 99% of the SSL clients, but for what I'm doing (a SSL scanner) it's kind of annoying. Well it's probably not going to change anytime soon, but now I want to know what's going on. When

[FWD] [Bug Reports] Encrypt a file text on unix (Aix 5.3, Aix 6.0,SUN5.8,....) to decrypt on Windows Error

2011-05-10 Thread Lutz Jaenicke
if altered, changed or falsified. = - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] RE: [Bug Reports] Encrypt a file text on unix (Aix 5.3, Aix 6.0,SUN5.8,....) to decrypt on Windows Error

2011-05-10 Thread Lutz Jaenicke
- -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support Mailing List

[FWD] some problem in compiling Openssl 1.0.0d for WCE

2011-03-16 Thread Lutz Jaenicke
disappointed,the error still exists. 詹晨辉 - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] Intermediate certificate chain not included when exporting as pkcs12

2011-02-17 Thread Lutz Jaenicke
- End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support Mailing List

OpenSSL server failure

2011-02-08 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! unfortunately the OpenSSL project has been hit by a hardware defect (hard disk and power supply). The project hence had to be migrated to a different server using a later version of the operating system and tools. Services are currently being

[FWD] Apache 2.2.17 and OpenSSL 1.0.0c - Crash with SSLVirtualHost ServerName set.

2011-02-03 Thread Lutz Jaenicke
/VirtualHost - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support

[FWD] problem in privete key

2011-01-31 Thread Lutz Jaenicke
/7d9kRWxG0YrTkYBKwerN4DflkCm1Glodt6Rhkwy Jvspbc7dell11wy+YeXl4c7zsumQcXOgSuWtiaLiiJw12uZVjFYmEBfdZ4zrJpYW mcaIGD1l4WsXGEesFA859g3ZiK52 -END CERTIFICATE- This is file sent by the server.please any one help me to connect to the server. Thanksregards K.A.Praveenkumar - End forwarded message - -- Lutz Jaenicke

[FWD] OpenSSL error message

2011-01-13 Thread Lutz Jaenicke
message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support Mailing List

[FWD] OPENSSL - Windows CE

2010-12-21 Thread Lutz Jaenicke
Hello I have an project in windows CE that i need to sign the message and verify the signature. I need to compile full OpenSSL? How to compile a short version? Can you help me, please. Thanks, Cerriman. - End forwarded message - -- Lutz

[FWD] Bug report: ntdll.mak file is not present

2010-12-21 Thread Lutz Jaenicke
it on Windows (seven) but under the *ms*sub-directory the * ntdll.mak* file is not present. Thanks. Best regards, Philippe. - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http

[FWD] Crash inside libeay32.dll

2010-12-16 Thread Lutz Jaenicke
. However, we experienced a crash inside the libeay32.dll. Is there a way we can gather more information where exactly the crash is, and to isolate the problem? Thanks. Regards, Eleanor - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http

[FWD] openssl 1.0.0a make FAIL @ multiple missing/redefined header errors, only on Ubuntu 10 LTS

2010-10-25 Thread Lutz Jaenicke
make[1]: Leaving directory `/usr/local/src/openssl/openssl-1.0.0a/crypto' make: *** [build_crypto] Error 1 - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] default_crl_days= 365

2010-10-19 Thread Lutz Jaenicke
, printing, copying or dissemination of this information in any way or in any manner is strictly prohibited. If you have received this communication in error, please delete this mail notify us immediately at ad...@sifycorp.com - End forwarded message - -- Lutz Jaenicke jaeni

[FWD] cert problem

2010-10-07 Thread Lutz Jaenicke
on this? Thanks http://code.google.com/p/xchat-wdk/issues/detail?id=18 - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] Question

2010-10-04 Thread Lutz Jaenicke
Thank you for your attention to this issue. Ramon Madera - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] help

2010-09-15 Thread Lutz Jaenicke
error: unable to load certificate 5880:error:0906D06C:PEM routines:PEM_read_bio:no start line:.\crypto\pem\pem_lib.c:647:Expecting: TRUSTED CERTIFICATE error in x509 Regards, sujatha - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http

[FWD] install openssl on a ox 10.6.x

2010-09-14 Thread Lutz Jaenicke
to install the app openssl ona mac os x? Thanks José Lourenço - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] How to user Configure with 64 bit compliation option

2010-07-07 Thread Lutz Jaenicke
,Sun-Fire-T1000. machine is using 32 bit MSB file format. but i require to build openssl using 64 bit option in this machine. how can i achieve that? - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] make: don't know how to make /usr/local/ssl/fips-1.0/lib/fipscanister.o. Stop

2010-06-11 Thread Lutz Jaenicke
) ICT Directorate University of Ghana Tel:+233 244 994 020 g-mail:ppom...@gmail.com yahoo-mail: mawua2...@yahoo.com skype:ppomary - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] VeriSign Intermediate Certificate missing

2010-06-11 Thread Lutz Jaenicke
+HCYlwx1ywPdd55PWcGytYFsYZDPdf+6Kl7ZIqn90bPW/W0awA= =tZQZ -END PGP SIGNATURE- - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] error:140773E8:SSL routines:SSL23_GET_SERVER_HELLO:reason(1000)

2010-04-22 Thread Lutz Jaenicke
) Closing fd 4 How can i produce above problem and solution of porblem? Thanks Regards, --VenkiP - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] Error: SSL: couldn't create a context!

2010-04-19 Thread Lutz Jaenicke
have any experience on how to debug, please share. Thanks, Sumit Sengupta - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL

[FWD] openssl-0.9.8 make error

2010-04-16 Thread Lutz Jaenicke
07:25 libgcov.a and my gcc test when Re-adjusting the Toolchain,the result are all the same ashttp://www.linuxfromscratch.org/lfs/view/stable/chapter06/gcc.html so what's wrong with it on earth???Help me please - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org

OpenSSL server problems

2010-03-09 Thread Lutz Jaenicke
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi! In the past few days we had some problems with the hardware of the OpenSSL server providing the public services (web, mail, etc). We are now closely monitoring the system and preparing to migrate to another server if necessary. Thank you very

[FWD] Building Win64 0.9.8l on VS2008

2010-02-02 Thread Lutz Jaenicke
://www.messagelabs.com/email __ - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] OPENSSL error

2010-01-18 Thread Lutz Jaenicke
- -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support Mailing List

[FWD] enhancement request:tls without sockets

2010-01-18 Thread Lutz Jaenicke
without sockets Hi, I have a quirky app that while connection based is not tcp based. I am looking for some way to usel tls for authentication of both ends of the connection. Is there an example of how to use OpenSSL without it managing the socket? Thanks - End forwarded message - -- Lutz

[FWD] RE: Help Request

2010-01-12 Thread Lutz Jaenicke
#include openssl/des.h the compilation is successfull. Why this include causes the error: implicit declaration of function ‘_’ Is it a bug in the openssl/des.h or in the VLC ? Thank you for your help Vincenzo Giarratana vincenzo.giarrat...@gmail.com - End forwarded message - -- Lutz

[FWD] Question on SSL_shutdown timeout

2009-11-27 Thread Lutz Jaenicke
of this timeout and how can it be configured ? I noticed that this timeout doesn't have always the same value. I did a search on the web but didn't find anything on this topic. Thank you very much, Xavier - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project

Re: New blackout

2009-11-26 Thread Lutz Jaenicke
Chris Wilson wrote: On Wed, 25 Nov 2009, The Doctor wrote: I was able to see openssl.org last night MST but not at this current time. Works fine for me. We did have filesystem full problems in the last days which led to system panics. These issues should be sorted out now (thanks to Ralf

[FWD] SSL_write returned SSL_ERROR_SSL

2009-11-03 Thread Lutz Jaenicke
should check this email and any attachments for the presence of viruses. The company accepts no liability for any damage caused by any virus transmitted by this email. www.wipro.com - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http

[FWD] Build incorrect crypt/decrypt in Win32. x86. MSVC 2003. MinGW.

2009-10-18 Thread Lutz Jaenicke
); BIO_flush(bout); BIO_free_all(cipher); return ret; } - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL

[FWD] Failed for target 'build_crypto'

2009-08-26 Thread Lutz Jaenicke
/openssl-0.9.8k/crypto *** Error code 1 make: Fatal error: Command failed for target `build_crypto' Hope you can help me out. Thanks. - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] crash on aix and win. memory issue ?

2009-08-06 Thread Lutz Jaenicke
­ Á 313 ¸86 Á.., 4096)= 0 kread(6, í @ ø L ­ Á 313 ¸86 Á.., 4096)= 0 kread(6, í @ ø L ­ Á 313 ¸86 Á.., 4096)= 0 Received signal #11, SIGSEGV [default] *** process killed *** - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project

[FWD] Openssl-0.9.8i build fails with Aix5.3 64 bit

2009-06-02 Thread Lutz Jaenicke
to this message and deleting it from your computer without copying or disclosing it. - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

Re: Spam on this list

2009-06-02 Thread Lutz Jaenicke
Rob Stradling wrote: Is it time to divide openssl-users into several lists? Maybe something like... openssl-fips for matters pertaining to OpenSSL/FIPS. openssl-build for reporting build errors with the OpenSSL sources. openssl-api for asking questions about how to use the OpenSSL C

[FWD] Openssl-0.9.8e/i build fails with Aix5.3 64 bit

2009-05-20 Thread Lutz Jaenicke
disclosure. If you have received this communication in error, please notify us immediately by replying to this message and deleting it from your computer without copying or disclosing it. - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http

Re: I want you to do my homework for me.

2009-05-06 Thread Lutz Jaenicke
David Loman wrote: Mods: Any way there can be some banning happening soon? Best way to end discussions like this one is to * step back * ignore what was written (annoying or offensive or not) * just do not write any more statements * enjoy doing something more useful Please understand that the

[FWD] witch version of pkcs can I use?

2009-04-06 Thread Lutz Jaenicke
that there is pkcs11, pkcs12 and pkcs15 that was used for the same aim!! can you please call me what pkcs have I to use? and why this choice? I'll be very greatful for your help.. waiting for your replay! W. - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL

[FWD] Question: using OpenSSL without DLL

2009-04-06 Thread Lutz Jaenicke
personnage à votre image pour votre WL Messenger http://go.microsoft.com/?linkid=9656622 - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL

[FWD] How to disable SSL

2009-03-25 Thread Lutz Jaenicke
was looking at google but i still wondering how to do that. So, please i really appreciate your help, any clue, any link. Thanks! - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] About OpenSSL crashed in 0.9.8g

2009-03-10 Thread Lutz Jaenicke
0x005556a27818 in OpenSSLDie () from /opt/ah/lib/libcrypto.so.0.9.8 Previous frame identical to this frame (corrupt stack?) who can give me the suggestion ? - End forwarded message - -- Lutz Jaenicke jaeni...@openssl.org OpenSSL Project http://www.openssl.org

Re: OpenSSL 0.9.8j build problem on ia64 SuSE 9.2

2009-01-14 Thread Lutz Jaenicke
Mark Lavi wrote: On Tue, Jan 13, 2009, Dr. Stephen Henson wrote: In these three lines in crypto/sha/Makefile: (cd asm; $(PERL) sha1-ia64.pl ../$@ $(CFLAGS)) (cd asm; $(PERL) sha512-ia64.pl ../$@ $(CFLAGS)) (cd asm; $(PERL) sha512-ia64.pl ../$@ $(CFLAGS)) Try changing ../$@ to ../$@

[FWD] An error appears when run ./CA.sh -sign

2008-12-12 Thread Lutz Jaenicke
/8dw7MCbsg1gMHPkzQkhOLFJZBnJX7XuasR7HD63 8P1oYSNMXAuFttUt46z7iK1wBE3sq/u11MUljR0oBHukSw== -END NEW CERTIFICATE REQUEST- --- ??(http://space.sina.com.cn/ ) - End forwarded message - -- Lutz

[FWD] Make report error openssl-fips-1.2 on Linux machine running Centos 4.7

2008-12-11 Thread Lutz Jaenicke
]: Leaving directory `/home/kdaciek/Desktop/openssl-fips-1.2/test' make[1]: *** [ssltest] Error 2 make[1]: Leaving directory `/home/kdaciek/Desktop/openssl-fips-1.2/test' make: *** [build_tests] Error 1 - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project

[FWD] How to add X509v3 Subject Alternative Name into cert created by openssl

2008-12-08 Thread Lutz Jaenicke
really appreciate your help.   Thanks   Mike - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

[FWD] I have a concatenate certificate problem

2008-12-04 Thread Lutz Jaenicke
__ ???Yahoo!??2.0??? http://tw.mg0.mail.yahoo.com/dc/landing - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] request for SSL

2008-12-03 Thread Lutz Jaenicke
Request for my website. Please Let me khow how to implement SSL. I have created SSL Request through IIS Server. What is the next Step? I am using ASP.NET 2.0,C# Technology. Thanks and Regards Pradeep Kumar Tamar +91-9711579560 - End forwarded message - -- Lutz Jaenicke [EMAIL

[FWD] Bug report

2008-11-28 Thread Lutz Jaenicke
08670 , : : [EMAIL PROTECTED], P Save a tree. Please don???t print this email or Documents unless it is really necessary. - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke

Re: pq_compat.h

2008-10-20 Thread Lutz Jaenicke
Alex Chen wrote: The header file crypto/pqueue/pq_compat.h does not have the following directive #ifndef HEADER_PQ_COMPAT_H #define HEADER_PQ_COMPAT_H #enedif The effect is that we get warnings about PQ_64BIT being redefined because ssl.h includes ssl3.h, which includes pq_compat.h,

[FWD] DNS Error while doing SSL handshake - bad gethostbyaddr

2008-10-10 Thread Lutz Jaenicke
Thanks Regards, Byju Joy +91-9902511344, +91-80-67245657, *7098068 - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

Re: Simple patch to crypto/sha/Makefile avoiding compile crash on IA64

2008-10-06 Thread Lutz Jaenicke
Amadeu A. Barbosa Jr wrote: Hi all, I got a problem on compile of openssl-SNAP-20081003 on IA64 (same on older versions of 0.9.9 dev source) like this: ... The following patch on crypto/sha/Makefile makes all right: openssl-SNAP-20081003$ diff -up crypto/sha/Makefile

Re: Problem Related to Peer cetificate verification.

2008-09-24 Thread Lutz Jaenicke
Ajeet kumar.S wrote: Dear All, I want to verify the peer certificate (server certificate). For that we need CA Certificate, Let me know we required ROOT CA certificate in PEM format or in any other format, open ssl will support. Actually I called

Re: How to use a hardware RNG with openssl?

2008-09-22 Thread Lutz Jaenicke
Gerd Schering wrote: Lutz Jaenicke wrote: Gerd Schering wrote: Hello, we purchased a hrng for the generation of RSA keys for instance. It is an USB device an shows up as /dev/qrandom. So, in order to generate rsa keys, is it sufficient to use it as a replacement for /dev/urandom

Re: How to use a hardware RNG with openssl?

2008-09-22 Thread Lutz Jaenicke
F. wrote: If the true random generator is in /dev/random, and I want use only this device for random data using openssl.cnf: RANDFILE = /dev/random Is this correct? This is nearly correct. OpenSSL will read 2048 bytes from it (2048 is hardcoded for device files to avoid

Re: How to use a hardware RNG with openssl?

2008-09-22 Thread Lutz Jaenicke
F. wrote: Any way to collect only from HRNG? This can be a choice or not? e_os.h #ifndef DEVRANDOM /* set this to a comma-separated list of 'random' device files to try out. * My default, we will try to read at least one of these files */ #define DEVRANDOM /dev/random

Re: How to use a hardware RNG with openssl?

2008-09-19 Thread Lutz Jaenicke
Gerd Schering wrote: Hello, we purchased a hrng for the generation of RSA keys for instance. It is an USB device an shows up as /dev/qrandom. So, in order to generate rsa keys, is it sufficient to use it as a replacement for /dev/urandom and to call genrsa as openssl genrsa -rand

Re: How to use a hardware RNG with openssl?

2008-09-19 Thread Lutz Jaenicke
Steffen DETTMER wrote: * Lutz Jaenicke wrote on Fri, Sep 19, 2008 at 14:22 +0200: we purchased a hrng for the generation of RSA keys for instance. It is an USB device an shows up as /dev/qrandom. Note: if /dev/urandom is available, OpenSSL will read an additional amount of random

Re: How to use a hardware RNG with openssl?

2008-09-19 Thread Lutz Jaenicke
Steffen DETTMER wrote: * Lutz Jaenicke wrote on Fri, Sep 19, 2008 at 16:46 +0200: OpenSSL's internal PRNG uses a 1024 byte pool mixing entropy with SHA-1 so the more bytes a mixed in, the better. At least it cannot hurt to add any input to it as the entropy in the pool can never decrease

OpenSSL Web Server Certificate renewed

2008-09-12 Thread Lutz Jaenicke
Hi! I have just installed a new (2048bit) certificate and key to the OpenSSL Project webserver. It is a wildcard certifcate for *.openssl.org catching both www.openssl.org and rt.openssl.org. Many thanks go to Steve Roylance from Globalsign for donating a 3 year wildcard SSL certificate!! Best

Re: SSL_session_reused api

2008-09-08 Thread Lutz Jaenicke
Krishna M Singh wrote: Hi All I have been using this API to dump in my statistics logs whether the SSL session is reused or not in a windows openSSL based client. Everything was good till i was using 9.7e. The session reuse works fine and the logs were correctly showing session reused

Re: Regarding DES_xwhite_in2out() API

2008-09-08 Thread Lutz Jaenicke
Kundile, Gayathri wrote: HI all, Anybody tell me about when we upgrading the openssl version from 0-9.8.g to openssl-0.9.8h, how the applications will affect which are using DES_xwhite_in2out() API The application will fail to link with an unresolved reference. This will however only

Re: DES-only OpenSSL version

2008-08-18 Thread Lutz Jaenicke
Kyle Hamilton wrote: Well, the question becomes: Which government are you trying to work around the restrictions of? OpenSSL is open-source. In the United States, while it may fall under the export class EI on the CCR, it also falls under export exemption TSU (see

Re: DES-only OpenSSL version: technical aspects

2008-08-15 Thread Lutz Jaenicke
Fred Picher wrote: Hello, Thanks for your reply. If this is not sufficient you may check out ssl/sslv3.c etc and actually remove the ciphers you don't want to support in your libssl from the registration tables. As a test, I've commented out every cipher definition in

Re: Working with Strings on a SSL Server

2008-08-14 Thread Lutz Jaenicke
Carolin Latze wrote: Hi everybody, I have a very strange problem and hope that somebody is able to help me. I wrote a simple client and server in C that authenticate each other mutually using SSL. The SSL connection itself is working and I was able to exchange messages using SSL_write and

Re: DES-only OpenSSL version: technical aspects

2008-08-14 Thread Lutz Jaenicke
Fred Picher wrote: Hello all, I'd like to get all of the ciphers that are tagged 'export' as well as the 56-bit ones that are not. Eg.: (list somewhat shortened in width) EDH-RSA-DES-CBC-SHA SSLv3 Kx=DH Enc=DES(56) EDH-DSS-DES-CBC-SHA SSLv3 Kx=DH Enc=DES(56)

[FWD] Re: Convert a DER certificate to PEM certificate

2008-08-12 Thread Lutz Jaenicke
01851 (978) 805-1816 Lutz Jaenicke [EMAIL PROTECTED] 08/08/2008 10:05 AM Please respond to [EMAIL PROTECTED] To [EMAIL PROTECTED] cc Subject Re: Convert a DER certificate to PEM certificate Dear Sir or Madam, please direct your question to openssl-users@openssl.org (after subscribing

Re: SSL_get_peer_certificate() failing

2008-07-30 Thread Lutz Jaenicke
From the mail thread I take it that your problem is visible at the client side of the connection, so a server certificate should always be send as long as you are not using an anonymous cipher (which need to be enabled specifically). Are you using SSL_connect() to explicitly connect to the server?

[FWD] Compiling error

2008-07-24 Thread Lutz Jaenicke
forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http://www.openssl.org User Support Mailing List

Re: Website correction request: only subscribers can post to openssl-users

2008-07-11 Thread Lutz Jaenicke
Frank J. Iannarilli wrote: Hi, On the following page: http://www.openssl.org/support/ it declares that anybody can post to the openssl-users. But evidently (from my experience), that's not true; only subscribers can. Unfortunately, browsing the website doesn't unambiguously indicate whom

[FWD] Not able to use openssl

2008-07-04 Thread Lutz Jaenicke
me out Thanks Regards Satya N Tailor - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http

[FWD] openssl command propt

2008-07-04 Thread Lutz Jaenicke
you really want - millions of new email addresses available now at Yahoo! http://uk.docs.yahoo.com/ymail/new.html - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke

[FWD] request UP UX openssl A.00.09.07l

2008-06-30 Thread Lutz Jaenicke
- End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project http

Re: No error messages on Linksys Openwrt

2008-05-27 Thread Lutz Jaenicke
Thomas Mangold wrote: Hello calling i2d_RSAPublicKey() I get on a linksys running OpenWrt kamikaze 7.09 the following errors. error:0D07207B:lib(13):func(114):reason(123) error:0D068066:lib(13):func(104):reason(102) error:0D07803A:lib(13):func(120):reason(58) Can anybody please tell me

Re: Certificate verification fails on MIPS architecture

2008-05-27 Thread Lutz Jaenicke
Till Elsner wrote: I tried to track down the problem, but it still seems that , when it comes to certificate verification, on the OpenWRT fails what works on a standard linux desktop PC. I wrote a short program that validates certificates, that I'll append to this mail. If someone has some

Re: Certificate verification fails on MIPS architecture

2008-05-26 Thread Lutz Jaenicke
Till Elsner wrote: Am 26.05.2008 um 13:13 schrieb Lutz Jaenicke: Till Elsner wrote: Ok, after verifying what platform I'm actually compiling for, it's definitely little-endian (Linksys WRT54G running on Broadcom BCM4712). So what else could be the problem here? Am 24.05.2008 um 22:23

Re: Certificate verification fails on MIPS architecture

2008-05-26 Thread Lutz Jaenicke
Till Elsner wrote: Ok, after verifying what platform I'm actually compiling for, it's definitely little-endian (Linksys WRT54G running on Broadcom BCM4712). So what else could be the problem here? Am 24.05.2008 um 22:23 schrieb Lutz Jänicke: I am not aware of any specific problems of OpenSSL

[FWD] Build fips test fails

2008-05-13 Thread Lutz Jaenicke
' - - End forwarded message - -- Lutz Jaenicke [EMAIL PROTECTED] OpenSSL Project http://www.openssl.org/~jaenicke/ __ OpenSSL Project

Re: The rules of SSL-Certificate validation?

2008-04-22 Thread Lutz Jaenicke
Anri Lau wrote: Hi Luzt, On 18/04/2008, *Lutz Jaenicke* [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Anri Lau wrote: Hi All, Anyone know how many rules should be performed when build TLS connection? I have some test case. The certificate time

Re: The rules of SSL-Certificate validation?

2008-04-18 Thread Lutz Jaenicke
Anri Lau wrote: Hi All, Anyone know how many rules should be performed when build TLS connection? I have some test case. The certificate time is not valid, validation failed. But the certificate passed if the validity dates of the child certificate are not contained within the validity

Re: OpenSSL trusted root store

2008-02-22 Thread Lutz Jaenicke
Steve Roylance wrote: Dear list, One of my responsibilities is to ensure that GlobalSign’s roots are embedded within devices and operating systems. Recently a major browser provider indicated the following:- /“However, for the most part we integrate with third party SSL/TLS

  1   2   3   4   5   6   7   8   >