At 9:20 AM -0800 1/11/07, Nelson B wrote:
Paul Hoffman wrote:

 Is there a list of these somewhere?

Not to my knowledge.  That's why I wrote that list in previous email.

Ah. Thanks for that then!

 > I am particularly interested in what NSS_ECC_MORE_THAN_SUITE_B does,

It is incomplete.  Doesn't work in its present state.  That's why I didn't
mention it.

Understood.

You need to specify the curve with "-q curvename"
See output of certutil -H for a list of curve names.
Unfortunately, that list is wrong.  It includes many curve names that
are not implemented presently. There are only 3 available right now.
They're the same ones used by Microsoft.
I don't have the right 3 names handy.  trial and error will find them.

Actually, it didn't. I wrote a Perl script to try them all, and every instance reported:

: An I/O error occurred during security authorization.

More clues?

--Paul Hoffman
_______________________________________________
dev-tech-crypto mailing list
dev-tech-crypto@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-tech-crypto

Reply via email to