Re: various memory leaks?

2000-05-16 Thread Amit Chopra
> Second one is more FYI. I've seen in the examples and the list archives > that ERR_remove_state(0) should be called to clean up some stuff at the > end. What I don't think anyone's mentioned is that it cleans up thread > specific data only for the thread which calls it. I've found that I need t

interoperability, esp. with a SSLv3(?) server

2000-05-16 Thread Claus Assmann
I have a question about the different SSL versions, i.e., which one should a client use to be interoperable? The specific problem is with the MTA at mail.stalker.com. I finally got around to do some more debugging and found out that openssl (starttls) can connect to it if it uses either SSLv23 wit

Question about KEYS.... (EVP_BytesToKey)

2000-05-16 Thread Brian Snyder
What is the purpose of this function. I have a disconnect on why this is needed as opposed to just setting a key and a IV. IE: If a user enters 'password' as his password, what good does running through the EVP_BytesToKey (or one of the specific functions like BF_set_key). I understand this

Windows COM SSL_connect problems

2000-05-16 Thread Angelo Nardone
I tried to make a ssl connection inside of a COM (dll). The COM try to 'post' some data to a secureweb server (https). This work fine in Linux an FreeBSD, but when I tried to use in a Windows routine, the 'SSL_connect' return "-1". Some body know the why? I include the source code of the 'interf

How set (xentroll.dll) createPKCS10 properties?

2000-05-16 Thread Ivo MACHULDA
Dear sir, I use xentroll.dll for creating the certificate request in MSIE 5.1. Which value to assign to usage parameter in createPKCS10 metod. At this time I using 1.3.6.1.5.5.7.3.2. What other possibilities? Eg: for object sign or client authorization. Thank you very much Ivo MACHULDA

Re: Certificate Management

2000-05-16 Thread Mads Toftum
On Tue, May 16, 2000 at 10:42:12AM -0700, Arun Venkataraman wrote: > We do SSL webhosting distributed over multiple webservers. Each customer we > host gets a domain called customer.speedera.com, so to avoid browser > warnings, we need a new certificate per customer distributed out to all the > SS

Self signed certificates using predefined start and end dates

2000-05-16 Thread Carlos Henrique Bauer
Hi, I want to create a self signed root CA certificate using a predefined start and end dates (not based on the curent time). Is there any easy way to do that? Best regards, -- Carlos Bauer __ OpenSSL Project

Certificate Management

2000-05-16 Thread Arun Venkataraman
We do SSL webhosting distributed over multiple webservers. Each customer we host gets a domain called customer.speedera.com, so to avoid browser warnings, we need a new certificate per customer distributed out to all the SSL webservers. Is it possible to get a *.speedera.com certificate so we can

Unable To Install The OPENSSL Properly On Linux Systems And Getting The Errors While Running The Programs(Client/Server Programs)

2000-05-16 Thread Raaj Krissna
I have tried to install the openssl(version Feb28,2000: openssl-0.9.5.tar.gz) on my Linux systems. But it is not properly installed.It means the temp foiles are not installed properly. I have followed the rules that are given in the INSTALL file of openssl-0.9.5a tar file( after gunzip). The rules