Re: X509_verify_cert(): verify with time and CRL

2004-09-14 Thread Goetz Babin-Ebell
Hi Steve, Dr. Stephen Henson wrote: On Mon, Sep 13, 2004, Goetz Babin-Ebell wrote: ther might be a problem in X509_verify_cert() (at least 0.9.7d): if you set a verification time and the CRL was not yet valid at this time, the error X509_V_ERR_CRL_NOT_YET_VALID will be generated. (see check_crl()

TLS application data MAC

2004-09-14 Thread Avinash Agarwal
Hello all, I'm trying to figure out how to generate the MAC for application data in TLS v1. The rfc (2246) says at ยง F.2 protecting application data Outgoing data is protected with a MAC before transmission. To prevent message replay or modification attacks, the MAC is computed from the