unexpected SSL_ERROR_ZERO_RETURN

2009-01-05 Thread Md Lazreg
Hi, I have an SSL server handling many clients successfully using openssl-0.9.8e. From time to time however, there are some clients that fail to connect to it. Debugging shows that the problem happens when the client attempts the first SSL_read, which unexpectedly returns 0. Checking then for the

Re: FW: FIPS_mode_set(1) call Fails

2009-01-05 Thread Dr. Stephen Henson
On Mon, Jan 05, 2009, Chikkanagappa, Manjula wrote: > > Hello, > > I am using static FIPS modules on Windows XP 32 bit. I am trying to link > with my application. I am following command in User Guide 1.2 for static > linking. > > perl util\fipslink.pl /nologo /subsystem:console /machine:I386 >

error:140890B2:SSL routines:SSL3_GET_CLIENT_CERTIFICATE:no certificate returned

2009-01-05 Thread ThanhTrung Do
Dear All, I run into a weird problem, so please help to give me some hints if you guys experienced the same thing. 1) I set-up a self-signed CA, keep the root CA private key in a Cryptoflex 32K card powered by OpenSC and EnginePKCS11. 2) I also have 2 other smart cards, both of them have certi

Re: AES key generation

2009-01-05 Thread Victor Duchovni
On Mon, Jan 05, 2009 at 05:06:29AM -0800, Cyanure wrote: > > Hi, > > AES symmetric keys are 128, 192 or 256 bits long. > > Is there a function in OpenSSL that creates (generates) an AES key (probably > using internal salt) with the desired length (128, 192 or 256 bits) ? Keys are either:

Re: Interesting article

2009-01-05 Thread Dan_Mitton
Thomas, Thank you. You stated my concerns much better then I did. Please respond to openssl-users@openssl.org Sent by:owner-openssl-us...@openssl.org To: openssl-users@openssl.org cc: (bcc: Dan Mitton/YD/RWDOE) Subject:Re: Interesting article LSN: Not Relevant User Fil

FW: FIPS_mode_set(1) call Fails

2009-01-05 Thread Chikkanagappa, Manjula
Hello, I am using static FIPS modules on Windows XP 32 bit. I am trying to link with my application. I am following command in User Guide 1.2 for static linking. perl util\fipslink.pl /nologo /subsystem:console /machine:I386 /out:out32\md2test.exe /ENTRY:"main" what does /out: option mean. Wha

AES key generation

2009-01-05 Thread Cyanure
Hi, AES symmetric keys are 128, 192 or 256 bits long. Is there a function in OpenSSL that creates (generates) an AES key (probably using internal salt) with the desired length (128, 192 or 256 bits) ? Thank You. -- View this message in context: http://www.nabble.com/AES-key-generation-tp21290

E-Mail failure notices

2009-01-05 Thread Michael S. Zick
@ M.L. Admin Could you kill the: brent (at) neptest.stratosone.com mailing list destination please. It has been bouncing mailing list messages for several weeks now. Mike __ OpenSSL Project http:/

Re: challengePassword attribute in CSR is a sequence?

2009-01-05 Thread Kyle Hamilton
On Mon, Jan 5, 2009 at 4:22 AM, Dr. Stephen Henson wrote: > > This actually addresses both the questions. In the distant past some > applications encoded certificate requests incorrectly and/or required an > incorrect encoding. That is there to tolerate and/or generate such stuff. > > Steve. Is t

Re: challengePassword attribute in CSR is a sequence?

2009-01-05 Thread Dr. Stephen Henson
On Mon, Jan 05, 2009, Giang Nguyen wrote: > > A side question: what exactly does this "which is wrong" comment > mean? :) > > typedef struct x509_attributes_st > ... > int single; /* 0 for a set, 1 for a single item (which is wrong) */ > union { > ... > } X509_ATTRIBUTE; > This

Error while configuring

2009-01-05 Thread Anna Patil
While I was doing configuration using *openssl-0.9.8d* following error occured # ./config Operating system: i686-whatever-linux2 Configuring for linux-elf Configuring for linux-elf no-camellia [default] OPENSSL_NO_CAMELLIA (skip dir) no-gmp [default] OPENSSL_NO_GMP (skip