Re: Problems having with OpenSSL and IE 5.0

2000-07-04 Thread Amit Chopra
Hi, Are you saying that the handshake completes successfully, but still 'page cannot be displayed' error occurs? I have such a problem with IE 5.00.2314.1003 (40 bit), but Netscape shows the page correctly. The problem could be with the certificate, because my partner and I use the same source

How to install mod_ssl to my apache ?

2000-07-04 Thread fumitada
Hi, I'm Fumitada. I just got mod_ssl right before, so I was looking for instructions to install. Unfortu... I couldn't find any instructions. Where can I find ? Please anybody tell me. Even though I checked up http://www.modssl.org/, I couldn't find any documentation for installing and usage.. T

Re: Problems having with OpenSSL and IE 5.0

2000-07-04 Thread Paul Khavkine
IE5 is not very verbouse about any errors. Try using netscape, if there's anything wrong at least netscape will give you a propper error message. Cheers Paul Peleg Atar wrote: > Hi all, > > My configuration is : > OpenSSL Server version 0.95 on NT OS, > Verisign class 3 certificate, > that was

Problems having with OpenSSL and IE 5.0

2000-07-04 Thread Peleg Atar
Hi all, My configuration is : OpenSSL Server version 0.95 on NT OS, Verisign class 3 certificate, that was certified by "www.verisign.com/CPS Incorp.by Ref. LIABILITY LTD.(c)97 VeriSign" that was certified by "Class 3 Public Primary Certification Authority" The Problem : When i am trying a to

Re: Web servers on the internet based on openssl

2000-07-04 Thread Oleg Makarenko
You may also try https://www.platina.ru/ mod_ssl2.6.4+patched openssl0.9.5a Oleg __ OpenSSL Project http://www.openssl.org User Support Mailing List[EMAIL PROTECTED] Automate

Re: Web servers on the internet based on openssl

2000-07-04 Thread Marko Vukovic'
Levy itai wrote: > > Hi Marko, > > You mean that I can't use a V3 certificate from Verisign ? > Does the V2 and V1 certificates from Verisign work ? > Does other vendors certificates work properly ? > > Did you figure out what is the problem, is it on the browser or on the > openssl server ? >

RE: Web servers on the internet based on openssl

2000-07-04 Thread Murphy, Mike R (NL - Amsterdam)
Itai I tried to send you an IP address so you could try things out, but you seem to have an anti-spam active. If you still want to play, send me a message from your _real_ address. Mike Murphy Deloitte & Touche Amsterdam > -Original Message- > From: Levy itai [mailto:[EMAIL PROTECTED]]

Re: installing w/ cygwin32

2000-07-04 Thread Ulf Möller
On Sun, Jul 02, 2000 at 07:54:14PM -0700, Mark Maggelet wrote: > Sorry if this isn't the best place to post this, but openssl-users would have been the right place. > in the INSTALL.W32 file that comes with openssl > it says that it can be compiled w/ GNU C (Mingw32 or Cygwin32). > It then goes

RE: Web servers on the internet based on openssl

2000-07-04 Thread Levy itai
Hi Marko, You mean that I can't use a V3 certificate from Verisign ? Does the V2 and V1 certificates from Verisign work ? Does other vendors certificates work properly ? Did you figure out what is the problem, is it on the browser or on the openssl server ? Thanks, Itai Levy. -Original Mes

Re: Web servers on the internet based on openssl

2000-07-04 Thread Marko Vukovic'
Levy itai wrote: > > Hi to all, > > Do you have a url of a web server based on openssl in the internet ? > > I want to check a secured connection between one of my browsers and an > openssl based server in order to investigate a problem that I have on my own > openssl based server. > The proble

Web servers on the internet based on openssl

2000-07-04 Thread Levy itai
Hi to all, Do you have a url of a web server based on openssl in the internet ? I want to check a secured connection between one of my browsers and an openssl based server in order to investigate a problem that I have on my own openssl based server. The problem is that I get a page not found err

Re: problems on osf/alpha systems

2000-07-04 Thread Richard Levitte - VMS Whacker
From: graham van epps <[EMAIL PROTECTED]> gvanepps> making all in crypto/sha... gvanepps> make[2]: Entering directory `/usr/local/src/openssl-0.9.5a/crypto/sha' gvanepps> cc -I.. -I../../include -std1 -tune host -O4 -readonly_strings -c sha_dgst.c -o sha_dgst.o gvanepps> Fatal: Insufficient

RE: chain certificate

2000-07-04 Thread Levy itai
Hi Vadim, Thanks for your reply. I managed things to work but I just want to confirm. I use the SSL_CTX_use_certificate_chain_file (sslContext, certfile) method, while sslcontext is the: SSL_CTX *sslContext and certfile is the path: "c:\\ ...\\srvcert.pem". srvcert.pem file contains the certifi

Sign one apllet

2000-07-04 Thread Sergio Basto
I dont know if it is out of subject but anyway... i have one server certificate sign by my CA with openssl. and know that i want one applet in the same site, have "privilegios" to work in client browser. how can sign this apllet ? or what i have to do to have primissions to work in client brower

Re: Announcement: PRNGD 0.1.0 released

2000-07-04 Thread Lutz Jaenicke
On Mon, Jul 03, 2000 at 05:56:17PM +0200, Bodo Moeller wrote: > On Mon, Jul 03, 2000 at 11:39:22AM +0200, Lutz Jaenicke wrote: > > > PRNGD - Pseudo Random Number Generator Daemon > > http://www.aet.tu-cottbus.de/personen/jaenicke/postfix_tls/prngd.h > > > - You can shut down PRNGD cleanly (i

Re: Réf. : viewing added oid

2000-07-04 Thread Dr Stephen Henson
Arnaud De Timmerman wrote: > > hi, > > Now I have this in my pkcs12 info : > *** > subject=/C=FR/ST=Nord/O=Certi/CN=dsfdsfqfds/Email=sqdfdqsfqdsfdsqf/1.6= > *** > > I'd like (for instance) to have "EXT" instead of "1.6". How can I do that since > when I chang

Re: chain certificate

2000-07-04 Thread Dr Stephen Henson
Levy itai wrote: > > Hi, > > I thought that verify locations is for the use of verifying client > certificates. > If I'm wrong, could you please tell me how do I use the > SSL_CTX_load_verify_locations method. It is used mainly for certificate verify (client and server) but it is also used to b

Réf. : viewing added oid

2000-07-04 Thread Arnaud De Timmerman
hi, Now I have this in my pkcs12 info : *** subject=/C=FR/ST=Nord/O=Certi/CN=dsfdsfqfds/Email=sqdfdqsfqdsfdsqf/1.6= *** I'd like (for instance) to have "EXT" instead of "1.6". How can I do that since when I change my [ new_oids ] section, openssl say : *

Re: chain certificate

2000-07-04 Thread Levy itai
Hi, I thought that verify locations is for the use of verifying client certificates. If I'm wrong, could you please tell me how do I use the SSL_CTX_load_verify_locations method. I succeeded to load a chain of certificates using the SSL_CTX_use_certificate_chain_file (sslContext, certfile) method