2nd Request for help Blackberry 7520 and failed in SSLv3 read client certificate A

2006-03-29 Thread David Gianndrea
I'm sure everyone is real busy like me, but if some one could explain this error im getting, and suggest how I could trouble shoot it more I would be great full! Dr. Henson, have you a few minutes to spare a lost admin? David Gianndrea Senior Network Engineer Comsquared Systems, Inc.

Blackberry 7520 and failed in SSLv3 read client certificate A

2006-03-24 Thread David Gianndrea
m+69pkvkRT/iub1cPK1wjooiXdGWMXWkeGy+17+ AwdKAVfd3Qvv8ImTJ4cMABX7vyNeJ8VLsHm57QMcEr3S4Y9JQWyUNYegkRRgWC+x ssygrAM85d7igbma9YljGHBj8qlk0X8WLUdow4oVBisS9xmwtzQx6qTDtvnMb/jz QPlMIH7gT3LrG7BfPAP9v10sxvepwWWlrguSbRiUOlZZznaXPtmGuJ1o/BwDGq0= -END CERTIFICATE- -- David Gianndrea Senior Network Engineer

What am I missing here?

2006-01-16 Thread David Gianndrea
ly other thing that I can think of that may be mucking up the works is that this is a self signed cert. Clues? -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsqu

Re: ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-19 Thread David Gianndrea
have them go over there design, and implementation document and make sure that they are doing sane things! Thanks everyone for your input! David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com Ken Goldman wrote: What Vict

Re: ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-19 Thread David Gianndrea
It is a development design, and support issue. They want to use what is native in the operating system. Since we are talking about solaris that makes it OpenSSL. David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com Rich Salz

Re: ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-18 Thread David Gianndrea
do. So in short we know what we want to do, and how we want to implement it into our software, but it appears that we may need a better understanding of the "Correct Way" to implement the encryption! David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [

Re: ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-18 Thread David Gianndrea
for this. David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com Victor Duchovni wrote: On Tue, Oct 18, 2005 at 10:40:21AM -0400, David Gianndrea wrote: Sorry I forgot to state that it is to encrypt file data on storage devices

Re: ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-18 Thread David Gianndrea
time to make sure there going down the right track. I forgot about Schneier's "Applied Cryptography"! I will point them to it as well. Any other words of wisdom would be a big help. David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL

ECB, CBC, CFB, OFB, and when and where you would use them.

2005-10-18 Thread David Gianndrea
I wonder if some one could point me to some high level document that would describe where, and when you would use ECB, CBC, CFB, OFB modes. I have some developers that are trying to include encryption into some code, and there seems to be some confusion among them. -- David Gianndrea Senior

Re: Getting Cisco 3kvpn to accept openssl signed certs - anyone done it?

2005-05-18 Thread David Gianndrea
Have you installed the CA cert on the cisco? David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com ray v wrote: Has anyone been able to get a certificate signed by openssl CA to accept the identity certificate? 1. Gen manual pkcs10

TLS vs SSL

2005-02-23 Thread David Gianndrea
I dont have my book handy today, but is TLS just another name for SSL or is it different? My development group is looking into encrypting a client server app data stream before putting it on the wire. Im thinking that TLS is better suited for that. -- David Gianndrea Senior Network Engineer

IE 6 Not showing lock when making an https connection.

2004-12-10 Thread David Gianndrea
from the cert that I didn't include, but I have no clue what! could some one clue me in on this? -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com __ Op

OT: Re: Question about setting a umask for sftp received files

2004-11-02 Thread David Gianndrea
See http://sftplogging.sourceforge.net/ David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com Matthew McHugh wrote: Hello, I am trying to set the umask of data received via sftp. I am running OpenSSH version 3.9p1 using OpenSSL

Re: OT: symbol ssl_expr_yylex: referenced symbol not found

2004-10-04 Thread David Gianndrea
Im not sure I understand what you mean by "internal development". All the source is clean, from there respective sites. I have made no modifications to any of the code. Doesn't the libssl.a file come from the Openssl build? David Gianndrea Senior Network Engineer Comsquared Syst

OT: symbol ssl_expr_yylex: referenced symbol not found

2004-10-01 Thread David Gianndrea
first referenced symbol in file ssl_expr_yylex modules/ssl/libssl.a(ssl_expr_parse.o) ld: fatal: Symbol referencing errors. No output written to httpd collect2: ld returned 1 exit status make[2]: *** [target_static] Error 1 -- David

Re: SMIME and user certs.

2004-05-14 Thread David Gianndrea
lmost asked about the structure of this stuff. In fear of having my head explode off my shoulders I backed away slowly from the RFC not making any sudden movements! Just kidding Doc! Thanks for the info, and helping me to understand some of this stuff. -- David Gianndrea Senior Network Eng

Re: SMIME and user certs.

2004-05-13 Thread David Gianndrea
? Would it be a list of the OID's of all the ciphers? -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com __ OpenSSL Project

Re: SMIME and user certs.

2004-05-12 Thread David Gianndrea
cess better. -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com __ OpenSSL Project http://www.openssl.org User Support Mailing

SMIME and user certs.

2004-05-12 Thread David Gianndrea
inquiring mind would like to know! -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquared.com __ OpenSSL Project http://www.openssl.org

Re: Non root user gets unable to write 'random state'

2004-04-22 Thread David Gianndrea
OH, never mind I just figured it out. It is trying to write a .rnd file. The problem is im running the command from a directory that I don't have write permissions to. DUH! David Gianndrea wrote: Im running 0.9.7 on an solaris 2.9 machine that has /dev/urandom and /dev/random devices. If

Non root user gets unable to write 'random state'

2004-04-22 Thread David Gianndrea
t creates the signed message. If the root user runs the same command it works with out a problem. I have tried chmod'ing the devices from 644 to 666 with out a change. What is the openssl command trying to write to? -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email

Re: Changing the pass phrase on a CA root key

2004-04-07 Thread David Gianndrea
Ok so to recap I would do the following. openssl rsa -in origca.key.pem -passout stdin -out newca.key.pem openssl rsa -in newca.key.pem -des3 -out ca.key.pem Dr. Stephen Henson wrote: On Mon, Apr 05, 2004, Charles B Cranston wrote: David Gianndrea wrote: What is the procedure for changing the

Re: Need of FBI surveilence and PC monitoring invasion protection...ie Carnovore, etc....

2003-08-04 Thread David Gianndrea
they just put it there so they can spread it around without being caught distributing it. So you probably want to google for spyware and BackOrifice remedies. Good luck. Lou -- David Gianndrea Senior Network Engineer Comsquared Systems, Inc. Email: [EMAIL PROTECTED] Web: www.comsquare