Am 30.01.19 um 16:53 schrieb selva.n...@gmail.com: > From: Selva Nair <selva.n...@gmail.com> > > For PSS padding, CNG requires the digest to be signed > and the digest algorithm in use, which are not accessible > via the rsa_sign and rsa_priv_enc callbacks of OpenSSL. > This patch uses the EVP_KEY interface to hook to > evp_pkey_sign callback if OpenSSL version is > 1.1.0. > > To test this code path, both the server and client should > be built with OpenSSL 1.1.1 and use TLS version >= 1.2 > > Tested on Windows 7 client against a Linux server. > > ACK. I verified that the changes are almost exclusively white spaces changes and apart from the MD_size change and therefore did not retest it.
So my ACK still stands: Acked-By: Arne Schwabe <a...@rfc2549.org>
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Openvpn-devel mailing list Openvpn-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-devel