I have got the point. If YY is less than 50, the year shall be interpreted as 20YY.

Thank you for the accurate guidance.

Best regards.

        Nelson.

-----Original Message-----
From:   Dr Stephen Henson [SMTP:[EMAIL PROTECTED]]
Sent:   Friday, 17 December, 1999 20:43
To:     [EMAIL PROTECTED]
Subject:        Re: apps\ca Y2K bug

Nelson Alves da Silva Filho wrote:
> 
> POSSIBLE bug regarding the ca application (OpenSSL-0.9.4).
> 
> I think the function ASN1_UTCTIME_set_string (a_utctm.c) is not Y2K safe and, 
>consequently, the "startdate" and "enddate" entries of openssl.cnf ca section as well.
> 

Check out the description of UTCTime in RFC2459. If you still think
there's a problem please be a bit more specific.

Steve.
-- 
Dr Stephen N. Henson.   http://www.drh-consultancy.demon.co.uk/
Personal Email: [EMAIL PROTECTED] 
Senior crypto engineer, Celo Communications: http://www.celocom.com/
Core developer of the   OpenSSL project: http://www.openssl.org/
Business Email: [EMAIL PROTECTED] PGP key: via homepage.


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

application/ms-tnef

Reply via email to