Re: Problem switching between FIPS and non FIPS mode

2008-03-07 Thread Tim Hudson
Gatfield, Geoffrey wrote: > I’m testing with Fips 1.2 and FIPS 1.1.2 and I am having a problem switching > between FIPS-mode and non FIPS-mode. I can enable FIPS mode initially using > FIPS_mode_set(1) but after that if it’s disabled (with FIPS_mode_set(0)) then > re-enabled the library fails with

multiple inputs multiple outputs

2008-03-07 Thread Kevin Guise
Greetings, I would like to use openssl to encrypt large volumes of neuroimaging data. These data are organized into separate directories, each containing hundreds of files. What I want to do is to write a script that finds each file in the directory structure, encrypts it using openssl, and overw

Problem switching between FIPS and non FIPS mode

2008-03-07 Thread Gatfield, Geoffrey
Hello, I'm testing with Fips 1.2 and FIPS 1.1.2 and I am having a problem switching between FIPS-mode and non FIPS-mode. I can enable FIPS mode initially using FIPS_mode_set(1) but after that if it's disabled (with FIPS_mode_set(0)) then re-enabled the library fails with a selftest error. We de

Re: testing upgrade from 0.9.7e to 0.9.8g

2008-03-07 Thread Goetz Babin-Ebell
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Ian jonhson schrieb: |> Besides certificate verification and session reconnect I don't |> know any details what you have to retest. |> | | You imply that the mechanism of X509-based certificate verification | has been embedded in openssh mainstream

Re: Using OpenSSL cryptographic functions in a multi-threaded application

2008-03-07 Thread Edward Diener
John T. Cox wrote: I do not know if it does or not. But, as an experienced programmer, I can guarantee that even if it does not today, one day someone will do something that will cause it to need it and you will start to get failures that will take weeks to track down. Why can't people just do

Re: Openssl + cipher

2008-03-07 Thread Victor Duchovni
On Tue, Mar 04, 2008 at 11:34:50AM -0600, Yolanda Craven wrote: > I'm new to using openssl and I need to change the cipher that is currently > being used. I'm using a product called ssl_proxy that doesn't have a config > file for changing/limiting any of these attributes. The current cipher is

Building OpenSSL with GMP;ECDSA optimization

2008-03-07 Thread bhanu rao
Hi, I am using OpenSSL 0.9.8g and i want increase the performance of ECDSA signing and verification on freescale 5200b using QNX.For this i am trying to compile OpenSSL with GMP for my target platform.My question are: 1. will this enhance the the performance of ECDSA signing and verification

RE: Openssl + cipher

2008-03-07 Thread Shaw Graham George
http://www.openssl.org/docs/ssl/SSL_CTX_set_cipher_list.html? G. From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Yolanda Craven Sent: 04 March 2008 17:35 To: openssl-users@openssl.org Subject: Openssl + cipher I'm new to using openssl and I ne

FIPS 1.1.2 on AIX?

2008-03-07 Thread RichTaylor
We're going through an building the FIPS Module 1.1.2 on various platforms that we support. We are about to get to AIX and from reading various sources, I'm under the impression that there are roadblocks we're going to hit when trying to build on AIX. Has anyone had luck building FIPS 1.1.2 with

Openssl + cipher

2008-03-07 Thread Yolanda Craven
I'm new to using openssl and I need to change the cipher that is currently being used. I'm using a product called ssl_proxy that doesn't have a config file for changing/limiting any of these attributes. The current cipher is aes-256 and I need to change it to something stronger with a key leng