Re: Help needed with X509_STORE_CTX structure

2022-05-08 Thread Viktor Dukhovni
On Mon, May 09, 2022 at 06:00:14AM +, Srinivas, Saketh (c) wrote: > I need to set the current_issuer field in an object of the > X509_STORE_CTX structure. Can any suggest the setter function for > this. You almost certainly don't *need* to do this. What is the actual high-level task you're t

Help needed with X509_STORE_CTX structure

2022-05-08 Thread Srinivas, Saketh (c)
HI, i need to set the current_issuer field in an object of the X509_STORE_CTX structure. Can any suggest the setter function for this. Also, current_crl_score and current_reasons also are needed to be 0 for me. Can you suggest setters for these variables. Thanks, Saketh. Notice: This e-mail t

Re: Help Needed for deprecated functions and macros like "CRYPTO_num_locks()" , "CRYPTO_LOCK" ......etc

2021-08-17 Thread Dr Paul Dale
Locking in OpenSSL 1.1.1 and later is completely different.  You no longer need to and should not try to register the locking callbacks. Pauli On 17/8/21 11:59 pm, Kumar Mishra, Sanjeev wrote: Hi All, I am upgrading the code from OpenSSL 1.0.1 to OpenSSL 3.0. I am getting compilation errors f

Help Needed for deprecated functions and macros like "CRYPTO_num_locks()" , "CRYPTO_LOCK" ......etc

2021-08-17 Thread Kumar Mishra, Sanjeev
Hi All, I am upgrading the code from OpenSSL 1.0.1 to OpenSSL 3.0. I am getting compilation errors for deprecated functions and macros like "CRYPTO_num_locks()" , "CRYPTO_LOCK" ..etc. But there is not any replacement for these functions and macros in OpenSSL 3.0. How can I handle these compil

[openssl-users] Help needed regarding x.509 keys for MQTT/Mosquitto

2017-01-08 Thread Walter Trojan
Hello, I try to generate x.509-keys for TLS/SSL operation with MQTT and Mosquitto and follow the Mosquitto TLS documentation: Generate a certificate authority certificate and key. openssl req -new -x509 -days 365 -extensions v3_ca -keyout ca.key -out ca.crt Generate a server key. op

Re: [openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158).

2015-09-10 Thread Jayalakshmi bhat
Hi Tom, Thanks a lot for clarifying the doubt. Regards Jayalakshmi On Thu, Sep 10, 2015 at 8:44 AM, Tom Francis wrote: > > > On Sep 10, 2015, at 8:44 AM, Jayalakshmi bhat < > bhat.jayalaks...@gmail.com> wrote: > > > > Hello all, > > > > I have a question on FIPS. We have OpenSSL FIPS module i

Re: [openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158).

2015-09-10 Thread Tom Francis
> On Sep 10, 2015, at 8:44 AM, Jayalakshmi bhat > wrote: > > Hello all, > > I have a question on FIPS. We have OpenSSL FIPS module integrated with our > product. We have an option to enable/disable FIPS at run time. We are > executing the following openSSL API's every time when FIPS status

Re: [openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158).

2015-09-10 Thread Jeffrey Walton
> ... > Without executing this we are hitting the error, > error:0409A09E:lib(4):func(154):reason(158). I wanted to know if our > approach is correct? > $ openssl errstr 0x0409A09E error:0409A09E:rsa routines:PKEY_RSA_VERIFY:operation not allowed in fips mode ___

[openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158).

2015-09-10 Thread Jayalakshmi bhat
Hello all, I have a question on FIPS. We have OpenSSL FIPS module integrated with our product. We have an option to enable/disable FIPS at run time. We are executing the following openSSL API's every time when FIPS status changes. { We have mapped OpenSSL crypto locks to mutex intenally. Hence w

Re: [openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158)

2015-07-17 Thread Jayalakshmi bhat
Hi Steve, Thanks a lot for the response. We are not using SSL 3.0. It is completely disabled in the stack. This issue is happening in TLS 1.0/ TLS 1.2 both. We are using OpenSSL 1.0.1c. I did not try using s_client. However I found the issue is fixed with the latest release of OpenSSL 1.0.2d. API

Re: [openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158)

2015-07-16 Thread Dr. Stephen Henson
On Thu, Jul 16, 2015, Jayalakshmi bhat wrote: > Hi All, > > I am using OpenSSL library for a SSL client performing mutual > authentication. RSA certificate used is signed with SHA512 digest. When I > switch to FIPS mode and perform re-authentication, I am hitting an > error :0409A09E:lib(4):func(

[openssl-users] Help needed on FIPS error 0409A09E:lib(4):func(154):reason(158)

2015-07-16 Thread Jayalakshmi bhat
Hi All, I am using OpenSSL library for a SSL client performing mutual authentication. RSA certificate used is signed with SHA512 digest. When I switch to FIPS mode and perform re-authentication, I am hitting an error :0409A09E:lib(4):func(154):reason(158). Cipher used is AES128-SHA. Can any one t

Re: OS/390 z/OS Help Needed

2014-07-08 Thread Richard Könning
Am 08.07.2014 18:10, schrieb T. Travers: I am new to this forum so please excuse me if I do not do this right. I am working on a z/OS 1.13 system aka OS/390 aka MVS. We have the need to parse X509 certificates. We were using an older version, 0.9.6a, but found that it did not interpret new signi

OS/390 z/OS Help Needed

2014-07-08 Thread T. Travers
I am new to this forum so please excuse me if I do not do this right. I am working on a z/OS 1.13 system aka OS/390 aka MVS. We have the need to parse X509 certificates. We were using an older version, 0.9.6a, but found that it did not interpret new signing algorithms correctly. I pulled down 1

Re: graphic arts help needed

2014-05-13 Thread Steve Marquess
On 05/13/2014 07:54 AM, Michel wrote: > Hello Steve, > > Just for fun : > And what about these two (attached) logos, > one for those who donate a little and the other for those who donate a > lot ? > > ;-) > Ha, those made me smile. I will pass those on, but I've just received feedback from the

Re: graphic arts help needed

2014-05-09 Thread elaine ossipov
You Betcha, I'd be happy to help. When would you like it by? and Ow, see Stacy just replied to, so maybe we can collaborate. ~~elaine o. *blessed be.* *http://elaineo.me * *See my vizify bio!* [image: Elaine Ossipov 's Visual Thumbprint]

Re: graphic arts help needed

2014-05-08 Thread Phong Long
Yes, saw that after sending the link. Updated, tweaked the “O" more, and now in higher res: https://app.box.com/s/82kre5pilgul89d4bean -Phong On May 8, 2014 at 8:04:58 PM, Tim Hudson (t...@cryptsoft.com) wrote: On 9/05/2014 12:38 PM, Phong Long wrote: Hello guys Saw this and I wanted to throw

Re: graphic arts help needed

2014-05-08 Thread Jeroen de Neef
Man, I really like to look at all these logos. Phong, can you make the images bigger? Because the resolution is quite small. Kind regards, Jeroen de Neef -- pgp/gpg key: https://jeroendeneef.eu/publickeys/pubkey.4B074162EC3601F7.Jeroen_de_Neef.asc 2014-05-09 4:38 GMT+02:00 Phong Long : > Hell

Re: graphic arts help needed

2014-05-08 Thread Phong Long
Hello guys Saw this and I wanted to throw my hat in the box too. taking Dom’s box.com suggestions, here’s my idea: https://app.box.com/s/2hgac5iy2ny1e9t21gpe Fonts: Libre Baskerville & Open Sans Icons: http://glyphicons.com/license I own a Pro License, but the Free one is CC BY 3.0 The Idea:

Re: graphic arts help needed

2014-05-08 Thread Dominyk Tiller
Hey Steve & all, Here's a link to a couple of ideas: 1) https://app.box.com/s/151g7a1dw186fmvx9t7z 2) https://app.box.com/s/t4wi69rojy6tcom4dqm3 (The link is to Box; tons more space & more open-source friendly than Dropbox, but I’ll upload to the latter if people prefer). I tried to send them ov

Re: graphic arts help needed

2014-05-08 Thread Steve Marquess
On 05/08/2014 02:44 PM, Stacy Devino wrote: > A contest is good. It gives you many options and personally, when I do > logo design and such even internally, I do many incarnations to give > maximum choice to my own brain. Sometimes even you don't know what you > like best. > > You may want to als

Re: graphic arts help needed

2014-05-08 Thread Jeroen de Neef
I had the same idea, what about designing a new logo with this new sponsor? To begin a new era for OpenSSL, one where people donate more and OpenSSL will have more full time devs. Kind regards, Jeroen de Neef -- pgp/gpg key: https://jeroendeneef.eu/publickeys/pubkey.4B074162EC3601F7.Jeroen_de_Ne

Re: graphic arts help needed

2014-05-08 Thread Stacy Devino
A contest is good. It gives you many options and personally, when I do logo design and such even internally, I do many incarnations to give maximum choice to my own brain. Sometimes even you don't know what you like best. You may want to also consider a new logo for OpenSSL that's a bit more moder

Re: graphic arts help needed

2014-05-08 Thread Jeroen de Neef
I would do it for free if I could work with photoshop, because it would feel like an honor to do it, but sadly I can't. Kind regards, Jeroen de Neef -- pgp/gpg key: https://jeroendeneef.eu/publickeys/pubkey.4B074162EC3601F7.Jeroen_de_Neef.asc 2014-05-08 18:43 GMT+02:00 Mauricio Tavares : > On

Re: graphic arts help needed

2014-05-08 Thread Mauricio Tavares
On Thu, May 8, 2014 at 12:20 PM, Steve Marquess wrote: > On 05/08/2014 11:21 AM, Jeroen de Neef wrote: >> Maybe there can be multiple entries, and have Nokia, you or the mailing >> list decide which they like. > > Well, that's fine but it wasn't really my intention to create a contest > and ask pe

Re: graphic arts help needed

2014-05-08 Thread Steve Marquess
On 05/08/2014 11:21 AM, Jeroen de Neef wrote: > Maybe there can be multiple entries, and have Nokia, you or the mailing > list decide which they like. Well, that's fine but it wasn't really my intention to create a contest and ask people to contribute labor that wouldn't be used. But if we do get

Re: graphic arts help needed

2014-05-08 Thread Jeroen de Neef
I also have a few questions. Are these volunteers allowed to display the work on their site and claim that they made it? I am also asking what you are willing to give these designers for a professional logo, because I know a guy that could make one for a bit of money. Maybe you can make a prize f

Re: graphic arts help needed

2014-05-08 Thread Jeroen de Neef
Maybe there can be multiple entries, and have Nokia, you or the mailing list decide which they like. Kind regards, Jeroen de Neef 2014-05-08 17:17 GMT+02:00 Steve Marquess : > On 05/08/2014 11:04 AM, Stacy Devino wrote: > > I would be happy to do so and I sure there are several others who woul

Re: graphic arts help needed

2014-05-08 Thread Steve Marquess
On 05/08/2014 11:04 AM, Stacy Devino wrote: > I would be happy to do so and I sure there are several others who would > as well. > > Do you have a specific upload location that you would like submissions > to go? I have two volunteers already (in just minutes!) so I don't want to waste your time

Re: graphic arts help needed

2014-05-08 Thread Stacy Devino
I would be happy to do so and I sure there are several others who would as well. Do you have a specific upload location that you would like submissions to go? Stacy Wylie stacydevino.com Android and Mobile Design guru On May 8, 2014 8:03 AM, "Steve Marquess" wrote: > We recently signed up our f

graphic arts help needed

2014-05-08 Thread Steve Marquess
We recently signed up our first ever Platinum sponsor (Nokia). One of the things we promised in return for that sponsorship was an "OpenSSL supporter" logo for their use. We don't have one and have never needed one before, now we do. If there are any artistically gifted volunteers who would like t

Re: EVP_DigestSign*() and EVP_DigestVerify*() - help needed

2013-08-19 Thread Thomas J Pinkl
On 08/16/2013 05:30 PM, Ken Goldman wrote: The usual cause of a padding error is that the private key used to sign does not correspond to the public key used to verify. That is, unless you're a newbie to crypto. In that case the error is that you're passing the length of an encrypted blob using

Re: EVP_DigestSign*() and EVP_DigestVerify*() - help needed

2013-08-16 Thread Ken Goldman
The usual cause of a padding error is that the private key used to sign does not correspond to the public key used to verify. That is, unless you're a newbie to crypto. In that case the error is that you're passing the length of an encrypted blob using strlen(). The way I typically debug is

EVP_DigestSign*() and EVP_DigestVerify*() - help needed

2013-08-16 Thread Thomas J Pinkl
I'm using OpenSSL 1.0.1e and attempting to use the EVP_DigestSign*() and EVP_DigestVerify*() functions from within my C code. I am able to produce a digital signature using EVP_DigestSignInit(), EVP_DigestSignUpdate(), and EVP_DigestSignFinal(). However, when I use the corresponding EVP_Diges

help needed!

2013-07-22 Thread M S
Good day all, I have a crash of our proprietary server, which is happening inside libraries. I will explain the set up. I built a module that uses gSoap, which in turn uses OpenSSL on Windows platform This module is used for credit card purchases. It serves multiple clients at a time, hence it'

Help Needed

2012-12-09 Thread Katta, Srinivasa CTR
Hi OpenSSL Folks, Good Morning. I was seeing following error message in the apache log file /usr/local/apache/logs/error_log,When I try to start the httpd daemon. [Fri Dec 07 16:45:14 2012] [emerg] FIPS mode failed [Fri Dec 07 16:45:14 2012] [emerg] SSL Library Error: 755413103 error:2D06B06

Help needed on to compile OpenSSL with FIPS

2012-10-22 Thread Bhat, Jayalakshmi Manjunath
Hi All, I wanted to know how to cross compile OpenSSL with FIPS enabled? Regards Jaya

Recall: Help needed on to compile OpenSSL with FIPS

2012-10-22 Thread Bhat, Jayalakshmi Manjunath
Bhat, Jayalakshmi Manjunath would like to recall the message, "Help needed on to compile OpenSSL with FIPS".__ OpenSSL Project http://www.openssl.org User Support Ma

Re: Help Needed: SSL Connect starting from a weird state

2011-10-22 Thread Jeff Saremi
My initial analysis of this was very misleading. I have to apologize for that. The problem was that during the first part of the handshake (clienthello), the call failed without anything being written out. Tracing ssl23_client_hello() in s23_clnt.c showed that the following statement returned false

Help Needed: SSL Connect starting from a weird state

2011-10-20 Thread Jeff Saremi
We've been running our SSL code for a while now with no issues. But recently one of our developers started encountering this problem. We did the best we could to troubleshoot to no avail. I know the problem is not OpenSSL and it's something we're doing incorrectly, probably at the start up. The p

Re: Urgent Help Needed

2010-03-21 Thread Sander Temme
On Mar 21, 2010, at 12:12 AM, Anjan Koundinya.K wrote: > What should I do? I need as a part of final year project . Please help If your curriculum has anything to do with computing, I suggest going back and taking the other years before you hit the final. Otherwise, you might try to put the l

Urgent Help Needed

2010-03-21 Thread Anjan Koundinya.K
I have installed openssl-0.9.8e on Ubuntu 9 and installation is successfully. But I am trying to execute SSL client and server in shell and get and error. */tmp/cceqI1DB.o: In function `main':* *sslclient.c:(.text+0x21): undefined reference to `initialize_ctx'* *sslclient.c:(.text+0x3a): undefine

RE: ssl_write returned ssl_error_ssl: urgent help needed

2009-11-18 Thread Jeremy Farrell
faqs/smart-questions.html From: sandeep.kuma...@wipro.com <mailto:sandeep.kuma...@wipro.com> To: openssl-users@openssl.org; openssl-...@openssl.org Hi, I got some weird error. help needed urgent.

Re: ssl_write returned ssl_error_ssl: urgent help needed

2009-11-18 Thread luiz
out > 0 ) r = select(iSock+1,&fd_r,&fd_w,NULL,&tv); else r = select(iSock+1,&fd_r,&fd_w,NULL,NULL); } while ( ret == -1 && r != 0 ); if ( r == 0) return -1; return ret; } > Hi, > > I got some weird err

ssl_write returned ssl_error_ssl: urgent help needed

2009-11-18 Thread sandeep.kumar17
Hi, I got some weird error. help needed urgent. SSL_write() is returned with error "SSL3_WRITE_PENDING:bad write retry". I have tried with flags "PARTIAL_WRITE" and "AUTO_RETRY" and "MOVING BUFFER". Still i am facing this problem. Any temporary work

Re: ECDHE help needed, please

2009-08-23 Thread Dr. Stephen Henson
On Sat, Aug 22, 2009, Michael D wrote: > Thank you for your reply. > If I understand correctly, by specifying the 'nocert' option > when starting s_server, I am limiting the cipher suites to those > without certificates. Otherwise I need to create a certificate > and cipher suites that require c

Re: ECDHE help needed, please

2009-08-22 Thread Michael D
n Henson wrote: > From: Dr. Stephen Henson > Subject: Re: ECDHE help needed, please > To: openssl-users@openssl.org > Date: Saturday, August 22, 2009, 1:19 PM > On Sat, Aug 22, 2009, Michael D > wrote: > > > > > I am testing a custom TLS client I am writi

Re: ECDHE help needed, please

2009-08-22 Thread Dr. Stephen Henson
On Sat, Aug 22, 2009, Michael D wrote: > > I am testing a custom TLS client I am writing for a night class. > I would like to use openssl s_server for the testbed, if that is possible. > > I am running openssl-1.0.0-stable-SNAP-20090821 > > * I am running the command as follows: > openssl s_se

ECDHE help needed, please

2009-08-22 Thread Michael D
I am testing a custom TLS client I am writing for a night class. I would like to use openssl s_server for the testbed, if that is possible. I am running openssl-1.0.0-stable-SNAP-20090821 * I am running the command as follows: openssl s_server -nocert It starts by saying: Using default temp D

RE: cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-24 Thread Dave Thompson
> From: owner-openssl-us...@openssl.org On Behalf Of javierm > Sent: Tuesday, 21 July, 2009 10:02 > To: openssl-users@openssl.org > Subject: Re: cannot create openssl master certificate on my > Exchange2007 Server!Help needed! > > > Check the man pages (man req), the -x

Re: cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-22 Thread Crypto Sal
Exchange2007 will accept both a CER file (binary encoded PKCS7 file or straight up PEM encoded PKCS7 file) or a PEM (Base64) encoded crt file via the *Import-ExchangeCertificate* cmdlet. Same can be said for IIS 6 and 7. Both Default to the CER container format. Exchange2007 has a function to

Re: cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-22 Thread Javier Mosqueda
Hi Javier, *, Javier Mosqueda wrote: > > Exchange2007 Server expects a file *.cer. To get this I should somehow get > a *.txt file to convert that into a *.cer. Am I right? What do I have to > do to get a *.txt file to be able to convert that into a *.cer? > Niels > Hi Niels: Mail systems

Re: cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-22 Thread deblarinteln
Hi Javier, *, Check the man pages (man req), the -x509 option is for a self signed cert (root), while the -new option produces a new cert request (so you are asking for conflicting tasks). In this case no request is needed because the it's the root cert. Your config option is ok. This way a r

Re: cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-21 Thread javierm
Check the man pages (man req), the -x509 option is for a self signed cert (root), while the -new option produces a new cert request (so you are asking for conflicting tasks). In this case no request is needed because the it's the root cert. Your config option is ok. This way a root and its asoc

cannot create openssl master certificate on my Exchange2007 Server!Help needed!

2009-07-21 Thread deblarinteln
Hi there, I followed the instructions given in this HowTo: http://www.dylanbeattie.net/docs/openssl_iis_ssl_howto.html and came smooth and with no probs to the point where I should create a master certificate using this command: openssl req -config openssl.conf -new -x509 -days 1001 -key keys/

Re: CertificateVerify structure decoding help needed

2009-07-17 Thread Akos Vandra
Thank you for your response. The problem is solved, and I can now decode the whole TLS stream, thanks. FYI, what I found out if you are interested: I have dug the source code to find out what is happening in the mean time, and found that the signed data is MD5++SHA1, but I have been calculating

RE: CertificateVerify structure decoding help needed

2009-07-16 Thread Dave Thompson
> From: owner-openssl-us...@openssl.org On Behalf Of Akos Vandra > Sent: Tuesday, 14 July, 2009 13:34 > I am trying to decode the CertificateVerify structure, but have thus far failed. > I have access to both client and server keys, and have sniffed their communication, >

CertificateVerify structure decoding help needed

2009-07-14 Thread Akos Vandra
Hello! I am trying to decode the CertificateVerify structure, but have thus far failed. I have access to both client and server keys, and have sniffed their communication, what I came up with (along the stream) is this CertificateVerify packet sent from the client to the server: 0x16, 0x03, 0x03,

Re: apache http server not connecting to correct open ssl --urgent help needed

2009-04-03 Thread Nikos Balkanas
to correct open ssl --urgent help needed hi nikos, Thanks fo rthe information. i tried you idea but still when i restart i get the following message. any more information is highly appreciated. My LDPATH has been set to the following: LD_LIBRARY_PATH="/usr/local/openssl098i/lib:/apps/

Re: apache http server not connecting to correct open ssl --urgent help needed

2009-04-03 Thread Srinivas Jonnalagadda
server not connecting to correct open ssl --urgent >help needed > >Hi, > >I imagine you are using a Solaris 10 machine. You also need to load >different versions of the same library. You need to set the correct >LD_LIBRARY_PATH. For 2.0.55 include in the LD_LIBARY_PATH yo

Re: apache http server not connecting to correct open ssl --urgent help needed

2009-04-03 Thread Nikos Balkanas
rrect open ssl --urgent help needed On Thu, Apr 02, 2009 at 05:20:30PM -0400, Srinivas Jonnalagadda wrote: Hi, I have openssl 0.9.8b installed with apache http server 2.0.55 on sloariz machine. when i installed i used the /usr/local/ssl as prefix and i did not use shared threads option. I w

Re: apache http server not connecting to correct open ssl -- urgent help needed

2009-04-02 Thread The Doctor
On Thu, Apr 02, 2009 at 05:20:30PM -0400, Srinivas Jonnalagadda wrote: > Hi, > > I have openssl 0.9.8b installed with apache http server 2.0.55 on sloariz > machine. when i installed i used the /usr/local/ssl as prefix and i did not > use shared threads option. I was able to install successfully

apache http server not connecting to correct open ssl -- urgent help needed

2009-04-02 Thread Srinivas Jonnalagadda
Hi, I have openssl 0.9.8b installed with apache http server 2.0.55 on sloariz machine. when i installed i used the /usr/local/ssl as prefix and i did not use shared threads option. I was able to install successfully. On the same machine i installed openssl 0.9.8i in /usr/local/openssl098i direc

Re: how to uninstall openSSL Urgent help needed

2009-03-29 Thread Sander Temme
On Mar 29, 2009, at 7:10 PM, Srinivas Jonnalagadda wrote: I am using Sun Solaris version 10. any help i shighly appreciated. If you mess with the OpenSSL 0.9.7 installed under /usr/sfw, you will lose ssh access to your server, since the installed copy of OpenSSH links against that OpenSS

getting warnings did my make pass for 0.9.8i -- urgent help needed

2009-03-29 Thread Srinivas Jonnalagadda
Hi, I was installing openssl-0.9.8i in /usr/local/openssl098i which is my own defined directory. though the dir does not exist on my sun solaris machine. I used the following commands and when i gave make test command i get the warnings but later in the end i get test uptodate. did my configure

Re: how to uninstall openSSL Urgent help needed

2009-03-29 Thread Srinivas Jonnalagadda
Hi, I am using Sun Solaris version 10. any help i shighly appreciated. Regards, Srinivas J -Original Message- >From: The Doctor >Sent: Mar 26, 2009 5:12 PM >To: openssl-users@openssl.org >Cc: "openssl-...@openssl.org" >Subject: Re: how to uninstall openSSL Urg

Re: how to uninstall openSSL Urgent help needed

2009-03-26 Thread The Doctor
On Thu, Mar 26, 2009 at 04:42:41PM -0500, Srinivas Jonnalagadda wrote: > Hi, > > I would like to know how to uninstall openssl from my unix machine. > What machine/box are you running? Linux? BSD? AIX? Sun? > > Thanks, > Srinivas Jonnalagadda > ___

Re: how to uninstall openSSL Urgent help needed

2009-03-26 Thread Kyle Hamilton
This is a -users question, not a -dev question. If openssl was installed from a package provided by or in the format of your OS vendor, uninstall it using the vendor's packaging tools. I've attached a list of files that are installed on my MacOSX machine by 'make install'. (the './' at the begin

how to uninstall openSSL Urgent help needed

2009-03-26 Thread Srinivas Jonnalagadda
Hi, I would like to know how to uninstall openssl from my unix machine. Thanks, Srinivas Jonnalagadda __ OpenSSL Project http://www.openssl.org User Support Mailing Listopenss

Help needed in including debug statements in the sockets in SSL.

2008-10-01 Thread prashanth s joshi
Hi SSL experts, I am working on the SSL decryption currently. My immediate requirement is as follows: I need to include some debugging statements in the socket calls such as recv and send. How do I do that? What are all the changes that I need to carry out to the make file etc.? If you could be po

Help Needed: Error loading cert from Char buffer

2008-03-28 Thread Mohd Saleem
Hi, I am trying to load a cert from a char buffer, I am getting an error, "error:0D0680A8:asn1 encoding routines:ASN1_CHECK_TLEN:wrong tag" This is the code snippet, could one somene please tell me what is the error ??? And how do we rectify it. Thanks, Saleem int SClient::loadCert(char *v_ce

Re: MAC Calculation help needed

2007-12-18 Thread Marek Marcola
On Tue, 2007-12-18 at 07:38 -0800, Suchindra Chandrahas wrote: > Hi Merek, > In the following function, > md_update(&md, pad_2, 40); > Is pad_2 and pad_1 (before), of size 40 bytes. I > think i am a wrong somewhere, cos i put them as 48 bytes for md5 and >

Re: MAC Calculation help needed

2007-12-18 Thread Suchindra Chandrahas
Hi Merek, In the following function, md_update(&md, pad_2, 40); Is pad_2 and pad_1 (before), of size 40 bytes. I think i am a wrong somewhere, cos i put them as 48 bytes for md5 and 40 bytes for sha Please let me know if i am wrong Thanks and Regards,

Re: MAC Calculation help needed

2007-12-18 Thread Suchindra Chandrahas
Hi Merek, Thanks a lot for replying! I changed a lot of code and downloaded wireshark source and made debug messages larger in number. I finally debugged step by step and kept on rectifying the code. Now the MAC is fine!!! Wireshark Debug Messages Say So! I am getting the er

Re: MAC Calculation help needed

2007-12-18 Thread Marek Marcola
On Mon, 2007-12-17 at 19:39 -0800, Suchindra Chandrahas wrote: > Hi All, > I am doing the following to calculate MAC > as per SSL v3 handshake: > > printf("\nRESULT: Plain Record encryption:\n"); > for ( i = 0; i < rec_len; i ++) > printf("%x

MAC Calculation help needed

2007-12-17 Thread Suchindra Chandrahas
Hi All, I am doing the following to calculate MAC as per SSL v3 handshake: printf("\nRESULT: Plain Record encryption:\n"); for ( i = 0; i < rec_len; i ++) printf("%x ", rec[i]); total_length = rec_len + 16

Build Question - Help Needed!

2007-03-01 Thread Seshadri Veeraraghavan
Hi, I got the overall build to work - FIPS as well as the latest OpenSSL snapshot. It took a while and I had to alternate somewhat between MinGW and Cygwin. Anyway, I was trying to build the example in the appendix (hmac) but it won't work. I used the very same makefile and source but here is

RE: Errors when coding X509 attributes - help needed

2006-03-29 Thread Daniel Díaz Sánchez
Enviado el: jueves, 16 de marzo de 2006 17:41 > Para: 'openssl-users@openssl.org' > Asunto: RE: Errors when coding X509 attributes - help needed > > Dr. Henson, > > I am using your ASN1 module, with some modifications to adapt it to the > RFC3281. I have been busy, but

RE: Errors when coding X509 attributes - help needed

2006-03-16 Thread Daniel Díaz Sánchez
ultant. > Funding needed! Details on homepage. > Homepage: http://www.drh-consultancy.demon.co.uk > -Mensaje original- > De: [EMAIL PROTECTED] [mailto:owner-openssl- > [EMAIL PROTECTED] En nombre de Dr. Stephen Henson > Enviado el: lunes, 20 de febrero de 2006 13:32 > Par

Re: Errors when coding X509 attributes - help needed

2006-02-20 Thread Dr. Stephen Henson
On Mon, Feb 20, 2006, Daniel Daz Snchez wrote: > [Sorry for the prior empty mails I am experiencing some problems with mail] > > Hello, > > I’m implementing some X509 attributes for a Openssl based X509 attribute > certificates API (will be available when finished). I have some problems > with o

Errors when coding X509 attributes - help needed

2006-02-20 Thread Daniel Díaz Sánchez
[Sorry for the prior empty mails I am experiencing some problems with mail] Hello, I’m implementing some X509 attributes for a Openssl based X509 attribute certificates API (will be available when finished). I have some problems with one attribute, I don't know if I am implementing it correctly o

Errors when coding X509 attributes - help needed

2006-02-20 Thread Daniel Díaz Sánchez
__ OpenSSL Project http://www.openssl.org User Support Mailing Listopenssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]

Errors when coding X509 attributes - help needed

2006-02-20 Thread Daniel Díaz Sánchez
__ OpenSSL Project http://www.openssl.org User Support Mailing Listopenssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]

urgent help needed, generating fingerprint of public key

2005-12-23 Thread Tom Horstmann
Dear list-members, we are in need to generate sha1-fingerprints for public keys contained in PKCS#10-certificate requests. Any tries we made did not lead to the correct fingerprints, as the description we got of what values to use for sha1 is vague. Since getting the right command-sequence to get

Re: PKCS12 help needed

2005-03-02 Thread Dr. Stephen Henson
On Wed, Mar 02, 2005, Carlos Roberto Zainos H wrote: > Hi there!!! > > I'm trying to use the openssl pkcs12 option from command line but I don't > undestand very well the options. > > I have a pair (private key and certificate file) both in PEM format. I want > to get a PKCS#12 file which c

PKCS12 help needed

2005-03-02 Thread Carlos Roberto Zainos H
Hi there!!!   I'm trying to use the openssl pkcs12 option from command line but  I don't undestand very well the options.   I have a pair (private key and certificate file) both in PEM format. I want to get a PKCS#12 file which content both. I would like importa that (the PKCS12 file) into MS Outlo

Re: 3 des implementation - help needed

2004-09-07 Thread Armel Asselin
Title: 3 des implementation - help needed encryption key & IV are only the state at start of encryption, this state evolves during encryption, so that if you store only the key and IV at the beginning of first packet, you must decrypt in same order as when you encrypted, this way the s

Re: Problems decrypting PKCS# Private Key , Help needed

2004-04-23 Thread Dr. Stephen Henson
On Fri, Apr 23, 2004, Carlos Roberto Zainos H wrote: > Hi all!!! > > Thanks again for the answers. > > The question that I now post refers to decrypt a private key PBE (PKCS#5). > I've working with priv/pub keys gotten from openssl, but now my C > applications needs to work with ones generated

Problems decrypting PKCS# Private Key , Help needed

2004-04-23 Thread Carlos Roberto Zainos H
Hi all!!!   Thanks again for the answers.   The question that I now post refers to decrypt a private key PBE (PKCS#5). I've working with priv/pub keys gotten from openssl, but now my C applications needs to work with ones generated with another application (commercial software). I've been discovere

PRNG not seeded -- help needed --

2002-11-16 Thread Data
Dear all, I know this is discussed a lot of times here but I need help about this. I`m getting the PRNG not seeded error.   This is what I`m getting at my online store: Unable to authorize payment: Error establishing SSL connection to 'secure.authorize.net': PRNG not seeded I`m new at this,

Re: help needed! error trying to verify a certificate

2002-11-14 Thread Charles B Cranston
"Mitchel, Jennifer (Jem)" wrote: > I have generated my key pair. I have generated my certificate > signing request sent it to my CA and gotten my certificate back... > I named it server.crt > I am trying to use ssl to verify the certificate. I have the key pair, > csr & server.crt all in /bin so

RE: help needed! error trying to verify a certificate

2002-11-14 Thread Mitchel, Jennifer (Jem)
- VMS Whacker [mailto:levitte@;stacken.kth.se] Sent: Thursday, November 14, 2002 3:20 AM To: [EMAIL PROTECTED]; [EMAIL PROTECTED] Subject: Re: help needed! error trying to verify a certificate In message <[EMAIL PROTECTED]> on Wed, 13 Nov 2002 16:10:07 -0600, "Mitchel, Jennifer (Jem)&qu

Re: help needed regarding RSA key generation.

2002-06-27 Thread Vadim Fedukovich
On Thu, Jun 27, 2002 at 12:06:01PM -0500, Manish Ramesh Chablani wrote: > > > > > On Thu, 27 Jun 2002, Vadim Fedukovich wrote: > > > On Wed, Jun 26, 2002 at 07:35:59PM -0500, Manish Ramesh Chablani wrote: > > > Hi, > > > > > > I am new to openSSL. I want to use openSSL to provide cryptograp

Re: help needed regarding RSA key generation.

2002-06-27 Thread Manish Ramesh Chablani
On Thu, 27 Jun 2002, Vadim Fedukovich wrote: > On Wed, Jun 26, 2002 at 07:35:59PM -0500, Manish Ramesh Chablani wrote: > > Hi, > > > > I am new to openSSL. I want to use openSSL to provide cryptographic > > functions like (key generation, encryption with public key, signing with private >

Re: help needed regarding RSA key generation.

2002-06-27 Thread Vadim Fedukovich
On Wed, Jun 26, 2002 at 07:35:59PM -0500, Manish Ramesh Chablani wrote: > Hi, > > I am new to openSSL. I want to use openSSL to provide cryptographic > functions like (key generation, encryption with public key, signing with private > key, MD5 calculation) i.e. basically I want to use Ope

help needed regarding RSA key generation.

2002-06-26 Thread Manish Ramesh Chablani
Hi, I am new to openSSL. I want to use openSSL to provide cryptographic functions like (key generation, encryption with public key, signing with private key, MD5 calculation) i.e. basically I want to use OpenSSL's Crypto library. I am trying to add authentication/security in MPI implem

Re: help needed

2002-05-29 Thread Deepak Saini
active perl is needed to run the perl scripts that help u build libraries... - Original Message - From: Rajiv Kumar To: [EMAIL PROTECTED] Sent: Wednesday, May 29, 2002 6:01 PM Subject: help needed hi, Iam running a Client/Server application written in C

Urgent help needed for installing openssl-0.9.6b on RHL 7.1

2002-04-18 Thread Nilesh Barot
Hello Gurus , I'm facing one typical problem while configuring openssl-0.9.6b on RedHat linux 7.1 , kernel 2.4.2-2. I have successfully configured and installed openssl-0.9.6b, mod_ssl-2.8.7-1.1.3.23 and Apache_1.3.23 on Redhat linux 7.2 , kernel 2.4.7-10. It is also working properly. This

Re: using MS Keys to create a certificate. Help needed - detailedexplanation given.

2001-12-21 Thread Dr S N Henson
Hylton Tregenza wrote: > > Hi all > > I am still battling with getting a key exported as a public > key blob from a MS platform into openssl on Linux to add to > a certificate. > I have learned that MS exports the key as a PKCS#1 > structure. the key is a 512 bit (64 Byte) key. When I write > t

using MS Keys to create a certificate. Help needed - detailed explanation given

2001-12-21 Thread Hylton Tregenza
Hi all I am still battling with getting a key exported as a public key blob from a MS platform into openssl on Linux to add to a certificate. I have learned that MS exports the key as a PKCS#1 structure. the key is a 512 bit (64 Byte) key. When I write this blob to file it is 84 Bytes in length.

  1   2   >