behaviour of SSL_accept

1999-07-27 Thread Simon Weijgers
Hello, I was playing a bit with openssl's sslv3 support and I noticed that even though SSL_accept returned -1 and no cipher was being used still application level data was being sent and successfully so (using SSL_write and SSL_read). Is this in accordance with the SSL specs? Also SSL_accept does

Re: Bug? Openssl ca ignores attributes without notice

1999-07-27 Thread Kaur Virunurm
Vadim Fedukovich wrote: > x509 application use X509_NAME_oneline() that wants to OBJ_obj2nid() > everything it prints. I'm not sure OBJ_obj2nid() returns something > useful for "uniqueIdentifier" and X509_NAME_oneline() will just skip > unknown name entry object. No no no! You missed the point. I

Re: RSA patent

1999-07-27 Thread Paul Preziosi
"Roeland M.J. Meyer" wrote: > > I think I mis-read your original question. For some reason I read > "unusable", sorry. Yes, the lapse of a patent means the technology > becomes available for all to use, freely. This is my understanding. The idea behind patents is kind of contract: - The gover

windows ssl ?

1999-07-27 Thread Ben Wooller
Hello everyone. I'm new to cryptography, but I've managed to compile openssl under win95 and get the .lib files Now I am confronted with a huge ssl.h file and I have no idea how to actually use the library! To start out with I basically want a secure socket connection between two machines workin

[FWD] Der to Pem

1999-07-27 Thread OpenSSL
- Forwarded message from [EMAIL PROTECTED] - >From [EMAIL PROTECTED] Tue Jul 27 10:08:45 1999 Received: by en5.engelschall.com (Sendmail 8.9.2) via SMTP from aries. id KAA15018; Tue, 27 Jul 1999 10:08:44 +0200 (MET DST) Received: from dif.um.es by aries. (SMI-8.6/SMI-SVR4)

AW: doing my own certificates

1999-07-27 Thread marcel-za . bucher
-- >Von: geoff / unix, mime >I would now like to be able to generate 20 client certficates, >and distribute them to people who will be accessing the web >server. > >could someone please point me in the right direction. Take a look at this beautiful page: http://www.ultranet.com/~fhirsch/P

RE: RSA patent

1999-07-27 Thread Roeland M.J. Meyer
I think I mis-read your original question. For some reason I read "unusable", sorry. Yes, the lapse of a patent means the technology becomes available for all to use, freely. This is my understanding. > -Original Message- > From: Richard Levitte [mailto:[EMAIL PROTECTED]] > Sent: Tuesday,

Handshake failure

1999-07-27 Thread J. Heinrich
The first SSL_write in my program fails due to a "handshake failure" when attempting to connect to a particular web server. I can connect to and execute HTTP requests against other SSL-capable web servers with my program, but not this particular one (running Microsoft-IIS/3.0). I see a similar r

RE: RSA patent

1999-07-27 Thread Richard Levitte - VMS Whacker
Uhmmm? Are you trying to pull a leg or two? Or have I missed something about how things work when a patent is no longer valid? rmeyer> No, it means exactly the opposite. [...] rmeyer> > [mailto:[EMAIL PROTECTED]]On Behalf Of Ray Hodel [...] rmeyer> > I am curious what is going to happen when th

RE: RSA patent

1999-07-27 Thread Eric J. Schwertfeger
On Tue, 27 Jul 1999, Roeland M.J. Meyer wrote: > No, it means exactly the opposite. Correct me if I'm wrong, but I thing you missunderstood. The URL you gave tells us what is needed now, not what will happen after the patent expires, which was the posters question. If RSA labs can enforce a pa

Re: RSA patent

1999-07-27 Thread Ray Hodel
Could you clarify what you mean. I don't fully understand of the legalities regarding patents. I thought that when a patent expires, it is then put into the public domain. Thanks, Ray Hodel "Roeland M.J. Meyer" wrote: > > No, it means exactly the opposite. > > > -Original Message- >

Re: Bug? Openssl ca ignores attributes without notice

1999-07-27 Thread vf
> > Hello all, > > I discovered a minor annoyance in the behaviour of OpenSSL (0.9.3a): > > If your cert request contains attributes that are not present in the > openssl.cnf policy section, they are printed during certification, > but silently dropped from the subject's DN in the cert itself.

RE: RSA patent

1999-07-27 Thread Roeland M.J. Meyer
No, it means exactly the opposite. > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED]]On Behalf Of Ray Hodel > Sent: Tuesday, July 27, 1999 7:00 AM > To: [EMAIL PROTECTED] > Subject: RSA patent > > > Hello, > > I am curious what is going to happen when the paten

doing my own certificates

1999-07-27 Thread Geoff Nordli
I have successfully compiled the openssl, modssl, apache. I would now like to be able to generate 20 client certficates, and distribute them to people who will be accessing the web server. could someone please point me in the right direction. thanks Geoff Nordli ___

RSA patent

1999-07-27 Thread Ray Hodel
Hello, I am curious what is going to happen when the patent for RSA expires next year. Does anyone know? Will that mean packages such as OpenSSL will be usable without penalty, for commercial purposes within the US? http://www.rsa.com/rsalabs/faq/html/6-3-1.html Thanks, Ray Hodel begin:vcard

Bug? Openssl ca ignores attributes without notice

1999-07-27 Thread Kaur Virunurm
Hello all, I discovered a minor annoyance in the behaviour of OpenSSL (0.9.3a): If your cert request contains attributes that are not present in the openssl.cnf policy section, they are printed during certification, but silently dropped from the subject's DN in the cert itself. Everything seems

Der to Pem

1999-07-27 Thread Gabriel Lopez Millan
Hello, I'm trying to pass a Der certificate to a Pem certificate but I don't know how, and pass a Der certificate to a X509 struct. Can anybody helpme begin:vcard n:Lopez Millan;Gabriel x-mozilla-html:TRUE org:Universidad de Murcia;Grupo CIRCuS adr:;; version:2.1 email;internet:[