timestamp server with OpenSSL

2000-11-02 Thread Derek Charles
I'd like to set up my own timestamping server with OpenSSL. Has anyone done this already and can give me some pointers or point me to a good resource? Thanks in advance, Derek. _ Get Your Private, Free E-mail from MSN Ho

Re: help needed with extended keyUsage v3 attrib.

2000-11-02 Thread Dr S N Henson
Corrado Derenale wrote: > > Hi, > anyone know how to sign a X.509 cert with the attribute: > > extended keyUsage > > set to > > TLS Web server authentication > > with the CA command? > Read the extension documentation in doc/openssl.txt and the ca manual page, then edit your config file

SPKAC challenge usage

2000-11-02 Thread Fabio Martinelli
Hi, I have installed time ago the openssl-0.9.4 release. At that time, in the documents, I found that the SPKAC challenge was not actually used to check against replay attacks. Is this situation changed with the new openssl release? Which is exaclty the SPKAC format? Best wishes, Fabio.

Re: Avoiding "man in the middle" attacks

2000-11-02 Thread amanda
That is impossible. If you can't secure your Win9x client then you can never ever establish any kind of secure communication from that client. Security has to begin at the end points. After you secure the client's cerificate store you then use those certificates to secure the communication.

multiple ssl servers on the same box?

2000-11-02 Thread Dean Hall
Hello. (First post!) First off, if I need to post questions about configuring Apache with mod_ssl somewhere else, please let me know where it is. Otherwise . . . I'm having several problems (or quandries, perhaps). The first is: when I try to specify two virtual servers using SSL like so: