Re: Understanding elliptic curve spec limitations

2021-09-28 Thread Bernd Eckenfels
ScarpinoCc: security-dev@openjdk.java.netBetreff: Re: Understanding elliptic curve spec limitations > On Sep 28, 2021, at 12:49 AM, David Blevins wrote:> >> On Sep 27, 2021, at 3:32 PM, Anthony Scarpino wrote:>> >> On 9/27/21 2:22 PM, David Blevins wrote:>>> I

Re: [External] : Re: Understanding elliptic curve spec limitations

2021-09-28 Thread Anthony Scarpino
When I read your first message I thought you were unable to use them using OpenSSL. Yes, the curves you are most likely looking for have been removed as the CSR describes. Tony > On Sep 28, 2021, at 8:32 AM, David Blevins wrote: > >  >> >>> On Sep 28, 2021, at 12:49 AM, David Blevins wr

Re: Understanding elliptic curve spec limitations

2021-09-28 Thread David Blevins
> On Sep 28, 2021, at 12:49 AM, David Blevins wrote: > >> On Sep 27, 2021, at 3:32 PM, Anthony Scarpino >> wrote: >> >> On 9/27/21 2:22 PM, David Blevins wrote: >>> I've been putting a significant amount of work into compiling a large set >>> of elliptic curve parameters/names/oids for an ope

Re: Understanding elliptic curve spec limitations

2021-09-28 Thread David Blevins
> On Sep 27, 2021, at 3:32 PM, Anthony Scarpino > wrote: > > On 9/27/21 2:22 PM, David Blevins wrote: >> I've been putting a significant amount of work into compiling a large set of >> elliptic curve parameters/names/oids for an open source library and a >> related closed source security produ

Re: Understanding elliptic curve spec limitations

2021-09-27 Thread Anthony Scarpino
On 9/27/21 2:22 PM, David Blevins wrote: I've been putting a significant amount of work into compiling a large set of elliptic curve parameters/names/oids for an open source library and a related closed source security product we have. We need to be able to support any of the curves that O

Understanding elliptic curve spec limitations

2021-09-27 Thread David Blevins
I've been putting a significant amount of work into compiling a large set of elliptic curve parameters/names/oids for an open source library and a related closed source security product we have. We need to be able to support any of the curves that OpenSSL/LibreSSL support. The trick is this is