Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-14 Thread Laszlo Ersek
ups.io; Lu, XiaoyuX >> >> Cc: Ye, Ting >> Subject: Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b >> >> Hi Jian, >> >> On 05/14/19 09:03, Wang, Jian J wrote: >>>> -Original Message- >>>> From: Laszlo Ersek [mail

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-14 Thread Wang, Jian J
s.io; Wang, Jian J ; Lu, > XiaoyuX > >> > >> Cc: Ye, Ting > >> Subject: Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to > 1.1.1b > > >> Honestly the best I could suggest is, "use RDRAND if available, fall > >> back to

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-14 Thread Laszlo Ersek
Hi Jian, On 05/14/19 09:03, Wang, Jian J wrote: >> -Original Message- >> From: Laszlo Ersek [mailto:ler...@redhat.com] >> Sent: Tuesday, May 14, 2019 12:15 AM >> To: devel@edk2.groups.io; Wang, Jian J ; Lu, XiaoyuX >> >> Cc: Ye, Ting >> Subject:

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-14 Thread Wang, Jian J
Laszlo, > -Original Message- > From: Laszlo Ersek [mailto:ler...@redhat.com] > Sent: Tuesday, May 14, 2019 12:15 AM > To: devel@edk2.groups.io; Wang, Jian J ; Lu, XiaoyuX > > Cc: Ye, Ting > Subject: Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-13 Thread Laszlo Ersek
gt; Regards, > Jian > >> -Original Message- >> From: devel@edk2.groups.io [mailto:devel@edk2.groups.io] On Behalf Of >> Laszlo Ersek >> Sent: Friday, May 10, 2019 1:30 AM >> To: devel@edk2.groups.io; Lu, XiaoyuX >> Cc: Wang, Jian J ; Ye, Ting >>

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-10 Thread Wang, Jian J
rsek > Sent: Friday, May 10, 2019 1:30 AM > To: devel@edk2.groups.io; Lu, XiaoyuX > Cc: Wang, Jian J ; Ye, Ting > Subject: Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b > > On 05/09/19 19:15, Laszlo Ersek wrote: > > > How about the following: >

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-10 Thread Xiaoyu lu
-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b Hi Xiaoyu, On 05/09/19 07:23, Xiaoyu lu wrote: > From: Xiaoyu Lu > > REF: https://bugzilla.tianocore.org/show_bug.cgi?id=1089 > > Update OpenSSL submodule to OpenSSL_1_1_1b > OpenSSL_1_1_1b(50eaac9f3337667259de725451

Re: [edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-09 Thread Laszlo Ersek
On 05/09/19 19:15, Laszlo Ersek wrote: > How about the following: > > - It seems like we cannot convince OpenSSL to *never* call these > functions, under UEFI. > > - We also cannot provide an implementation that is *guaranteed* to be > secure enough, IMO. > > - It seems like these

[edk2-devel] [PATCH v2 5/6] CryptoPkg: Upgrade OpenSSL to 1.1.1b

2019-05-08 Thread Xiaoyu lu
From: Xiaoyu Lu REF: https://bugzilla.tianocore.org/show_bug.cgi?id=1089 Update OpenSSL submodule to OpenSSL_1_1_1b OpenSSL_1_1_1b(50eaac9f3337667259de725451f201e784599687) Run process_files.pl script to regenerate OpensslLib[Crypto].inf and opensslconf.h Remove NO_SYSLOG from