-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hi,
I'm having problems with my PKCS #11 implementation and mod_nss. The requests using SSLv3 protocol fails with bad_record_mac (20). I think the problem is in client_key_exchange (16), and I would like to know if both TLSv1 and SSLv3 protocols use the PKCS #1 Encryption-block formatting according to RFC 2313: EB = 00 || BT || PS || 00 || D . SSLTAP shows the ClientKeyExchange message length in client_key_exchange (16) is 130 (0x82) for TLSv1 and 128 (0x80) for SSLv3. Best regards, - -- Ramon de Carvalho Valle Software Engineer IBM Linux Technology Center E-Mail: rcva...@linux.vnet.ibm.com -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAkvfKtsACgkQGIS0iEuhp4OaHwCeNMz9V1iEEHcZ7gVIjvtvWKIi 4voAn30DOVRrXFrT38wDhfkQGza2uaM4iEYEARECAAYFAkvfKtsACgkQkcIYeh81 wLmaHwCcCDCrvD4Uasb+d6ozZ5li6v/GwskAn3LP0OKUgP+ZXJJaCphAgaEQ0vns =C6Om -----END PGP SIGNATURE----- -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-tech-crypto