RE: ssl handshake failure in 1.0.1 but not 1.0.0

2013-11-10 Thread Dave Thompson
> From: owner-openssl-users On Behalf Of Ben Arnold > Sent: Friday, November 08, 2013 10:45 > I have tried using s_client and it fails with the same handshake failure. Please > see below. > > > > Attaching a PCAP file of the traffic is much more useful than hex packet > > dumps. > > You're righ

Re: FIPS support with shared libraries on FreeBSD 9.1

2013-11-10 Thread Steve Marquess
On 11/07/2013 10:51 PM, Girish wrote: > I am facing the same issue and getting same error on FreeBED 9.1 as below. > > FIPS routines:FIPS_check_incore_fingerprint:fingerprint does not > match:fips.c:232: > > Only thing different is I am using openssl-fips-2.0.5. Did anyone get > solution for t

Re: about openldap client ssl

2013-11-10 Thread Michael Ströder
You should better ask OpenLDAP questions on the openldap-technical mailing list: http://www.openldap.org/lists/ Ciao, Michael. Robbie Mingfu Zhang wrote: > Hi: > > If I set the "TLSVerifyClient demand" on openldap server side, then I'll got > below error > > (set TLSVerifyClient as never/allo