Re: Will my application be FIPS 140-2 Certified under following conditions?

2019-07-03 Thread open...@foocrypt.net
Deepak Just take note of the FIPS 140-2 sunset, and rise of FIPS 140-3 140-3 Takes Effect: 9/22/19 140-3 New Testing Begins: 9/22/20 140-2 Sunset: 9/21/21 140-3 Mandated: 9/22/21 And best of luck ;)

Re: new algorithms

2019-04-08 Thread open...@foocrypt.net
HI Giovanni Depending on the country you are located in, you may need to check the current status of your countries regulatory legislation regarding encryption technologies. Participating countries : https://www.wassenaar.org/participating-states/

Heads up, Inbuilt KORN Arithmetic & Test functions broken under Windows Subsystem for Linux

2019-03-04 Thread open...@foocrypt.net
Hi Not sure if any of the build / test process of OpenSSL utilise inbuilt KORN Arithmetic & Test functions. https://community.ubuntu.com/t/inbuilt-korn-arithmetic-test-functions-broken-under-windows-subsystem-for-linux/10089

TLS v HSTS v T.O.L.A.

2019-02-25 Thread open...@foocrypt.net
Hi The current PJCIS is due to report early April. And just to relieve some the seriousness of the T.O.L.A. impacts whilst scribbling together another 10 pages for a PJCIS, I’ve put together the following subdomain.

Re: [openssl-users] How to use a specific ip interface while testing TLS/SSL connectivity.

2019-02-09 Thread open...@foocrypt.net
HI Rajinder Perhaps a tunnel may help ? Have a look at man -s ssh, check out binding to interfaces and setting up a tunnel from one Nic through to your endpoint. Have a look at nectar or nc as its called these days for listening on the endpoint of the tunnel as your basic http 1.1 server, and

Re: [openssl-users] How to use a specific ip interface while testing TLS/SSL connectivity.

2019-02-08 Thread open...@foocrypt.net
Hi Rajinder There shouldn’t be any issues depending on how your host OS is performing the routing to the network the SSL/TLS endpoint is on. Try a tracerout to the IP to see where it goes, and a telnet IP 80 or 443 to make sure you can connect to the web server. — Regards, Mark A. Lane

Re: [openssl-users] Session params output fails via cron

2019-01-04 Thread open...@foocrypt.net
Just a thought … Do you get the same error when running the command from within a shell script from cron [ in either bash or Korn or one of the other sh’s ] or by executing the shell script from the command line ? What are your default environment settings and shell for the user you are

Re: [openssl-users] Authentication over ECDHE

2018-12-31 Thread open...@foocrypt.net
p reading these mails ) > > In message <11edc036-87d3-4757-ad33-80c6e608f...@foocrypt.net> on Tue, 1 Jan > 2019 01:27:53 +1100, "open...@foocrypt.net" said: > >> Matt et al >> >> 'been reviewed and approved by two current OpenSSL committers (one o

Re: [openssl-users] Authentication over ECDHE

2018-12-31 Thread open...@foocrypt.net
Matt et al 'been reviewed and approved by two current OpenSSL committers (one of whom must be on the OpenSSL Management Committee).’ Due to the recent legislative changes here in Australia around the T.O.L.A. Act, can a change be made to the OpenSSL policy so that the 2 reviewers, don’t

Re: [openssl-users] AssAccess was passed with no amendments

2018-12-17 Thread open...@foocrypt.net
will be compromised > or lost, someday, some way. That's the reason so many people have been > against backdoors like this -- the security of the system is good, but the > security of human beings tasked with maintaining the security of the system > is nowhere near as good. &

Re: [openssl-users] AssAccess was passed with no amendments

2018-12-14 Thread open...@foocrypt.net
Rather than going down the political or policy line, perhaps it may be prudent to discuss the technical solutions to testing the engine, regardless of the OS it is running on. How does one validate and test the engines during / after compile to ensure their ‘trust’ ? > On 15 Dec 2018, at

[openssl-users] AssAccess was passed with no amendments

2018-12-06 Thread open...@foocrypt.net
Does OpenSSL have a policy stance on government enforced back doors ? -- Regards, Mark A. Lane Cryptopocalypse NOW 01 04 2016 Volumes 0.0 -> 10.0 Now available through iTunes - iBooks @ https://itunes.apple.com/au/author/mark-a.-lane/id1100062966?mt=11 © Mark A. Lane 1980 - 2018, All

[openssl-users] Telecommunication and Other Legislation Amendment (Assistance and Access) Bill 2018

2018-12-03 Thread open...@foocrypt.net
It’s looking like AssAccess will be law here by the end of the week. Anyone know of a ‘good’ country to live / work in ? How many Openssl developers are within Australian boarders ? -- openssl-users mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users

[openssl-users] AssAccess : Telecommunication and Other Legislation Amendment (Assistance and Access) Bill 2018

2018-11-11 Thread open...@foocrypt.net
Greetings Currently down here in the land down under, the Telecommunication and Other Legislation Amendment (Assistance and Access) Bill 2018, is currently under going scrutiny via the Parliamentary Joint Committee on Intelligence and Security. Published submissions are available via : [

[openssl-users] AssAccess : Telecommunication and Other Legislation Amendment (Assistance and Access) Bill 2018

2018-11-11 Thread open...@foocrypt.net
Greetings Currently down here in the land down under, the Telecommunication and Other Legislation Amendment (Assistance and Access) Bill 2018, is currently under going scrutiny via the Parliamentary Joint Committee on Intelligence and Security. Published submissions are available via : [

Re: [openssl-users] OpenSSL vs GPG for encrypting files? Security best practices?

2018-11-07 Thread open...@foocrypt.net
ages-share/anunnaki1.jpg > <http://nickpapadonis.com/images-share/anunnaki1.jpg> > http://nickpapadonis.com/images-share/summerian-Winged_Human-headed_Bulls.JPG > <http://nickpapadonis.com/images-share/summerian-Winged_Human-headed_Bulls.JPG> > > On Sun, Nov 4, 2018 at 7:21 P

Re: [openssl-users] OpenSSL vs GPG for encrypting files? Security best practices?

2018-11-04 Thread open...@foocrypt.net
Hi Nick Have You tried The FooKey Method ? https://foocrypt.net/the-fookey-method Also, I will be sourcing public addendum's as addendum's to my submission into the Parliamentary Joint Committee on Intelligence and Security [