[openssl-dev] [openssl.org #3936] Bug (maybe) report

2015-09-09 Thread Emilia Käsper via RT
OpenSSL attempts to load the master/default conf before diving into the subcommand and overriding the conf with the config in -config. It'll bail when it can't read the file, but only warn if the file does not exist. This seems wrong, and is a regression compared to 0.9.8, so I'm going to leave th

[openssl-dev] [openssl.org #3936] Bug (maybe) report

2015-07-10 Thread William Freeman via RT
This could be a real bug, a doc bug, or I'm just not getting it. I'm using "-config" with "openssl req" and "openssl ca" to use an alternate openssl.cnf file. The command bombs because (being run as non-root) it can't read the default /etc/pki/tls/openssl.cnf file, since it is owned by root and