[openssl-users] SSL_accept appears to be stuck

2016-01-26 Thread Prabhu S
I have an SSL server, which has, suddenly stopped processing client requests. I see the following error. >> SSL_GET_NEW_SESSION:ssl session id callback failed. Exactly after 15 seconds of calling SSL_accept, the error is seen. The socket is non-blocking. The application was running fine for a

[openssl-users] A path for feature obsolescence

2016-01-26 Thread Sec_Aficiondado
Hello, This occurred to me the other day after reading a thread about the possibility of removing some functions in OpenSSL. No matter how arcane or obscure, any existing feature is bound to have very loyal and probably vocal users. So my idea is along these lines: 1. Announce the potential re

Re: [openssl-users] parse tlsext error in response to client hello

2016-01-26 Thread Wieck, Owen
Many thanks! I'll chase down the vendor. The device in question is a Canon imagerunner MFP in case anyone was wondering. --OLW -Original Message- From: openssl-users [mailto:openssl-users-boun...@openssl.org] On Behalf Of Matt Caswell Sent: Monday, January 25, 2016 6:42 PM To: openssl

[openssl-users] FIPS 140-2 X9.31 RNG transition partially done

2016-01-26 Thread Steve Marquess
If you don't know or care what FIPS 140-2 is then bail out now. Here be dragons. The CMVP has approved the mandated "X9.31 RNG transition"[1] update for two-thirds of the OpenSSL FIPS Object Module v2.0. That "transition" consists of editorial changes to the Security Policy document(s) and did not