Openssl test ms\test fails for fips capable openssl in windows

2013-03-25 Thread Raghav Varadan
Hi, I'm getting the following failure when trying to build FIPS capable openssl in windows: ectest Curve defined by Weierstrass equation y^2 = x^3 + a*x + b (mod 0x17) a = 0x1 b = 0x1 Point is not on curve: x = 0xD, y = 0xA41E .\crypto\ec\ectest.c:318: ABORT problems. The

Re: Timestamp for Microsoft Authenticode?

2013-03-25 Thread Raghav Varadan
Hi, I'm getting the following failure when trying to build FIPS capable openssl in windows: ectest Curve defined by Weierstrass equation y^2 = x^3 + a*x + b (mod 0x17) a = 0x1 b = 0x1 Point is not on curve: x = 0xD, y = 0xA41E .\crypto\ec\ectest.c:318: ABORT problems. The

Re: Timestamp for Microsoft Authenticode?

2013-03-25 Thread Walter H.
On 25.03.2013 18:05, Jakob Bohm wrote: This one lacks the data part, it seems to have been generated without the "-nodetach" option. - myreply02cms-asn1.text This one has the data part, but lacks the "signingTime" attribute which is the whole point of this exercise. how can I correct this?

Re: Timestamp for Microsoft Authenticode?

2013-03-25 Thread Jakob Bohm
On 3/22/2013 10:09 PM, Walter H. wrote: Hello, I got two more replies of public time stamp servers, - msrecv01ts-asn1.text - msrecv02ts-asn1.text (used a different source, so the hash differs) - msrecv03ts-asn1.text the structure of these 3 replies look nearly the same as my two generated - m

Re: Diffie algorithm in openssl: and Java

2013-03-25 Thread azhar jodatti
Thanks for the explanation and help.. everything worked perfect. :) :) Regards, Azhar On Mon, Mar 25, 2013 at 1:34 PM, Dave Thompson wrote: > > From: owner-openssl-us...@openssl.org On Behalf Of Dave Thompson > > Sent: Wednesday, 20 March, 2013 20:21 > > > >From: owner-openssl-us...@openssl.or

Re: error - seeding PRNG failed

2013-03-25 Thread Mithun Kumar
FYI.. i am working on AIX - 64 bit platform. On Mon, Mar 25, 2013 at 9:50 PM, Mithun Kumar wrote: > Hello All, > > I am getting below error when trying to create a connection > > "Seeding the PRNG failed, most likely because the system does not have > /dev/random." > > > Any inputs why this err

error - seeding PRNG failed

2013-03-25 Thread Mithun Kumar
Hello All, I am getting below error when trying to create a connection "Seeding the PRNG failed, most likely because the system does not have /dev/random." Any inputs why this error pops up?

RE: Unexpected message during renegotiate attempt

2013-03-25 Thread Jason Schultz
Has there been any response to this? I dealt with a similar situation about 6 months ago. It turned out, at first my application was handling some responses to SSL_write() and SSL_read incorrectly: http://www.mail-archive.com/openssl-users@openssl.org/msg67276.html However, after furthur inv

Re: CMS_decrypt in a buffer

2013-03-25 Thread Dr. Stephen Henson
On Mon, Mar 25, 2013, spammazz wrote: > Hi all, > I'm using openssl-1.0.1e library to decrypt an email and the output is > redirected into a file. > > BIO *bio_plain_text = BIO_new_file("plain_text", "w"); > > CMS_decrypt(contentInfo, pkey, mla_cert, NULL, bio_plain_text, 0); > > How c

EAP-TTLS using OpenSSL

2013-03-25 Thread Sankar Das
Hi,   I am trying to implement a Radius Client with EAP-TTLS support. I'd like to use OpenSSL for SSL handshaking. The control packets i.e. Client Hello, Key Exchange etc needs to be encapsulated as AVP in Radius packet. Is there any API in OpenSSL library that I can use to create these cont

EAP-TTLS using OpenSSL

2013-03-25 Thread Sankar Das
Hi,   I am trying to implement a Radius Client with EAP-TTLS support. I'd like to use OpenSSL for SSL handshaking. The control packets i.e. Client Hello, Key Exchange etc needs to be encapsulated as AVP in Radius packet. Is there any API in OpenSSL library that I can use to create these control

CMS_decrypt in a buffer

2013-03-25 Thread spammazz
Hi all, I'm using openssl-1.0.1e library to decrypt an email and the output is redirected into a file. BIO *bio_plain_text = BIO_new_file("plain_text", "w"); CMS_decrypt(contentInfo, pkey, mla_cert, NULL, bio_plain_text, 0); How can I decypt in a buffer also if I don't know the output s

Re: Encrypt / DECRYPT a XML file using AES - break the file into 256 bits...

2013-03-25 Thread Satyapraksh Panigrahi
You need not break your files into blocks. You can directly feed your file (as a string or byte array) into OpenSSL methods. OpenSSL methods will take care of breaking your whole data into blocks, encrypting each block and then providing you with the entire encrypted data. Here's a small link to ge

RE: Diffie algorithm in openssl: and Java

2013-03-25 Thread Dave Thompson
> From: owner-openssl-us...@openssl.org On Behalf Of Dave Thompson > Sent: Wednesday, 20 March, 2013 20:21 > >From: owner-openssl-us...@openssl.org On Behalf Of azhar jodatti > >Sent: Wednesday, 20 March, 2013 15:21 > >this.secretKey is an object of javax.crypto.SecretKey which > >I am using for