On 12/10/15, 16:56 , "openssl-dev on behalf of Dr. Stephen Henson" <openssl-dev-boun...@openssl.org on behalf of st...@openssl.org> wrote:
>On Thu, Dec 10, 2015, Blumenthal, Uri - 0553 - MITLL wrote: >... > >> >Temporary fix is to set the second argument in EVP_PKEY_CTX_new to NULL >> >in pkeyutl.c >> >> With your proposed (temporary) fix, the signature both generated and >> verified successfully (see below). Could I ask to push this fix to the >> master, and maybe/hopefully to 1_0_2 branch? >> > >As I indicated the fix I suggested it temporary. Sometimes a user will >want >that behaviour so we'd need a new command line option indicating the >private >key engine only. I’ve submitted a PR <https://github.com/openssl/openssl/pull/523> that does what you suggested, and has been reviewed favorable (thanks, R$, :-). When could it be merged? (So it has a chance to percolate down to the actual distros, and I can return to running openssl from a standard build that somebody else maintains, rather than my own github clone :-)
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ openssl-dev mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev