On Tue, Jan 26, 2010, sandeep kiran p wrote: > >1.0.0 uses a different algorithm for computing hashes which relies on a > form of canonical encoding. > > Does that mean we need to recompute the hashes for existing CA certs and > CRLs if we are to work with 1.0.0 since it seems to generate a different > hash value for the same cert? >
Yes. Steve. -- Dr Stephen N. Henson. OpenSSL project core developer. Commercial tech support now available see: http://www.openssl.org ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager majord...@openssl.org