Netscape support for S/MIME v3

2004-12-08 Thread Aparna Nandyal
Hi all, I have a question about Netscape support for S/MIME v3. I know that Netscape 7.x supports S/MIME. Does anyone know what version of S/MIME Netscape 7.x supports? Is it v2 or v3? What about Lotus Release 6? Does it support S/MIME v3? Thanks in advance Aparna Confidentiality Notice

RE: about "Changes between 0.9.7d and 0.9.7e."

2004-12-08 Thread Takurou Saitou
Hi, Dr Stephen. Thanks for the response. > -Original Message- > From: [EMAIL PROTECTED] > > > On Tue, Dec 07, 2004, Takurou Saitou wrote: > > > Hi, > > > > I have a question about "Reduce the chances of duplicate > > issuer name and serial numbers (inch violation of RFC3280) > > using the

Re: Extract data from pkcs7 file

2004-12-08 Thread Nils Larsch
Luca wrote: Hi guy, I'm new to openssl world and I have a question. I have a file in pkcs7 format (the data is attached with the signature) and I need to extract only the data from this file. I took a look at the manual but using "openssl pkcs7" I can't get what I want :(. Could some one help

Extract data from pkcs7 file

2004-12-08 Thread Luca
Hi guy, I'm new to openssl world and I have a question. I have a file in pkcs7 format (the data is attached with the signature) and I need to extract only the data from this file.  I took a look at the manual but using  "openssl pkcs7" I can't get what I want :(. Could some one help me?

Re: Problems with SSL_read() - SSL_ERROR_SYSCALL / EOF - SOLVED

2004-12-08 Thread Louis LeBlanc
On 12/08/04 11:44 AM, Louis LeBlanc sat at the `puter and typed: > > > Ok, I finally figured this one out. > > It was the cipher list after all. > > My initial configuration used the list [EMAIL PROTECTED], which was intended > to maximize the list of ciphers used while giving preference to we

ssl3_get_record wrong version handshake failure

2004-12-08 Thread Justin Miller
Hi all. I've googled this error and found various things, none of which really help that much. Even though it's stunnel that's using the openssl libraries, the errors below seem to be ssl related, so I thought this was an appropriate place. What I'm trying to do is, use stunnel to connect to an h

Re: CRL Race condition

2004-12-08 Thread Dr. Stephen Henson
On Wed, Dec 08, 2004, prakash babu wrote: > Hello all, > >There has been a tremendous performance during CRL check between > 0.9.7d and 0.9.7e > > I measured the time for checking the crl with 1,00,000 entries > using the following command > >

Re: Problems with SSL_read() - SSL_ERROR_SYSCALL / EOF - SOLVED

2004-12-08 Thread Louis LeBlanc
On 11/22/04 02:20 PM, Louis LeBlanc sat at the `puter and typed: > Hey everyone. Been a long time since I've been able to spend much time > on SSL code, but here I am again. > > My app is a client side HTTP/HTTPS application, and the problem that > recently showed up (more likely it was just rece

Re: "certificate is invalid or corrupted"

2004-12-08 Thread Frédéric PAILLETTE
Michael Goettsche wrote: On Wednesday 08 December 2004 16:56, Frédéric PAILLETTE wrote: CA signing: server.csr -> server.crt: Using configuration from ca.config Enter PEM pass phrase: Check that the request matches the signature Signature ok The Subjects Distinguished Name is as follows countryN

Quantum Encryption no protection against man in the middle attack?

2004-12-08 Thread Charles B Cranston
Quantum Cryptography vs the "man-in-the-middle" attack The recent availability of commercial products for quantum cryptography has generated much press attention, however, any putative value-add for these products escapes this author. Given the traditional "man in the middle" attack where Vladimir

Re: "certificate is invalid or corrupted"

2004-12-08 Thread Michael Goettsche
On Wednesday 08 December 2004 16:56, Frédéric PAILLETTE wrote: > >>CA signing: server.csr -> server.crt: > >>Using configuration from ca.config > >>Enter PEM pass phrase: > >>Check that the request matches the signature > >>Signature ok > >>The Subjects Distinguished Name is as follows > >>countryN

Re: "certificate is invalid or corrupted"

2004-12-08 Thread Frédéric PAILLETTE
Michael Goettsche wrote: On Monday 06 December 2004 17:49, Michael Goettsche wrote: Hi list, I'm having problems with my openssl certificate used with apache2. I've followed the tutorial on apache.org to create a certificate and sign it afterwards. This step-by-step guide can be found here: http

Re: "certificate is invalid or corrupted"

2004-12-08 Thread Michael Goettsche
On Monday 06 December 2004 17:49, Michael Goettsche wrote: > Hi list, > > I'm having problems with my openssl certificate used with apache2. > I've followed the tutorial on apache.org to create a certificate and sign > it afterwards. This step-by-step guide can be found here: > http://httpd.apache.

CRL Race condition

2004-12-08 Thread prakash babu
Hello all,      There has been a tremendous performance during CRL check between 0.9.7d and 0.9.7e     I measured the time for checking the crl with 1,00,000 entries using the following command    time openssl verify -crl_check -CAfile $ssl_crl_dir/