[openssl-users] OpenSSL 0.9.6a PRNG algorithm weakness

2015-10-07 Thread Alan Chee
Hi, I saw an advisory on exploiting a PRNG weakness in OpenSSL versions up to 0.9.6a by using several short PRNG requests. It looks interesting. Do you have any idea for the details of the attacking technique? Thanks in advance! Regards,Alan

Re: [openssl-users] [openssl-dev] Elliptical Cipher Suites

2015-10-07 Thread Thirumal, Karthikeyan
Vik Am using 0.9.8a version. Am trying to fix few weak ciphers in my SSL connection and also to make Elliptical cipher suites enable. I see that ECDHE ciphers are elliptical - need more info on this. Thanks & Regards Karthikeyan Thirumal -Original Message- From:

Re: [openssl-users] [openssl-dev] Elliptical Cipher Suites

2015-10-07 Thread Viktor Dukhovni
On Wed, Oct 07, 2015 at 01:54:40PM +, Thirumal, Karthikeyan wrote: > Vik That's not my name. > Am using 0.9.8a version. Am trying to fix few weak ciphers in my SSL > connection and also to make Elliptical cipher suites enable. > I see that ECDHE ciphers are elliptical - need more info on