Re: [openssl-users] What does EC_KEY_get0_public_key deliver?

2015-01-09 Thread Christian Weber
Am 09.01.2015 um 01:11 schrieb Matt Caswell: On 09/01/15 00:05, Christian Weber wrote: Thanks Matt, i just assumed the BIGNUMs were the coordinates without any projection - obviously that assumption was wrong - mislead by the funtions name. What interests me is to how you accessed the BIGNUMs

Re: [openssl-users] What does EC_KEY_get0_public_key deliver?

2015-01-08 Thread Christian Weber
rrow. MfG -- Chris Am 08.01.2015 um 22:43 schrieb Matt Caswell : > > > On 08/01/15 17:16, Christian Weber wrote: >> Dear OpenSSL-Users, >> >> recently i found a pitfall using EC_KEY_get0_public_key(key->pkey.ec). >> The function just returns a copy to a pointer

[openssl-users] What does EC_KEY_get0_public_key deliver?

2015-01-08 Thread Christian Weber
Dear OpenSSL-Users, recently i found a pitfall using EC_KEY_get0_public_key(key->pkey.ec). The function just returns a copy to a pointer to key->pub_key which is a EC_POINT pointer. The key itself is taken from a certificate using EVP_PKEY *key = X509_get_pubkey(cert); Fine, i assumed, these

Re: [openssl-users] OpenSSL with 64bit Instruction-Set and libraries for Windows? (solved)

2014-12-05 Thread Christian Weber
gly the dlls do contain the code for multiple platforms like fat libraries under osx. Thank you -- Christian Weber ___ openssl-users mailing list openssl-users@openssl.org https://mta.opensslfoundation.net/mailman/listinfo/openssl-users

OpenSSL with 64bit Instruction-Set and libraries for Windows?

2014-12-05 Thread Christian Weber
erated for VC-WIN32. The compiled libraries remain being build against the 32-bit versions. So what am i missing? Is there any real support for Win64? Thanks in advance -- Christian Weber Security Software Abteilungsleiter Entwicklung mailto:we...@infotech.de -- Infotech Gesellschaft für Informa

SRP in OpenSSL 1.0.1

2012-04-04 Thread Christian Weber
cating the lookup to init_ssl_connection in apps/s_cerver.c? Any opinions about possible security weakening against implementing the lookup within the callback? TIA -- Christian Weber __ OpenSSL Project

Re: DIRECTORYSTRING and substitute in v1.0.0d

2011-03-23 Thread Christian Weber
_INFO, professionOIDs, ASN1_OBJECT), Steve. Yes, your're absolutely right. Applying your definition, the proposed path becomes obsolete. Thank you. -- Christian Weber __ OpenSSL Project http://www.openss

timestamping DETACHED SMIME

2011-03-17 Thread Christian Weber
(), just as in the old manner, but then the contents happens to be processed twice (hash calculation and signature processing) when the data is written, because the output routine heavily depends on the new auxiliary asn1 callback. Any hint? What am i missing? TIA -- Christian Weber

Re: DIRECTORYSTRING and substitute in v1.0.0d

2011-03-11 Thread Christian Weber
revised. If the former, i would appreciate to see them in the mainstream. Christian Weber wrote on 10.03.2011 at 18:40: ... --- C:/wrk/openssl-1.0.0d/crypto/asn1/tasn_dec.cTue Jun 15 18:25:06 2010 +++ S:/Build/SAK-2.1/openssl-1.0.0d/crypto/asn1/tasn_dec.cThu Mar 10 01:26:40 2011 @@ -188,6

DIRECTORYSTRING and substitute in v1.0.0d

2011-03-10 Thread Christian Weber
if (opt) return -1; ASN1err(ASN1_F_ASN1_ITEM_EX_D2I, ASN1_R_ILLEGAL_OPTIONS_ON_ITEM_TEMPLATE); goto err; We wonder if this critical in any aspect? With the patch the lib st

attributecertificate extensions

2009-02-27 Thread Christian Weber
Dear OpenSSL users, lately I ran into a problem when trying to parse attributecertificates (ACs). ACs contain a sequence of attributes which look like x509v5 attributes. I've decided to use parts of the AC implementation from Daniel Díaz-Sánchez (downloable at http://www.it.uc3m.es/dds/swRelease/

X509v3 extensions

2008-09-12 Thread Christian Weber
Dear participators, trying to add some x509v3 extension awareness tu openssl we've become a bit short for solutions. x509 extensions are as versatile as asn1 permits. As extension to certificates there are an object id and a critical flag followed by whatsoever. If it comes to unknown oids at l

Re: templates and cert chain validity

2008-07-11 Thread Christian Weber
Hi again, sorry, we just found the error in using the Macros. When an asn structure is being parsed, the pointer to the funding ASN_OCTET_STRING becomes modified and thus points no no freeable memory. Christian Weber schrieb am 10.07.2008 13:41: ... To implement a validity checking which is

templates and cert chain validity

2008-07-10 Thread Christian Weber
he issuers cert is valid. I thought the right place would be somewhere within x509_vfy.c, perhaps at check_issued, but the search was in vain. Is there any function to do a comparation of two ASN_TIME values correctly though different f

BN_LLONG use in pq_compat.h

2007-10-24 Thread Christian Weber
d in opensslconf.h which in turn is included in pq_compat.h so the PQ_64BIT remains undefined. Is this a typo in ph_compat.h? How is BN_LLONG to be read? If defined - BNs shall be used instead of native 64-bit integers - or - - use native 64-bit integers (that are hopefully supported)? TIA -

Re: PKCS7: decoding failed

2005-09-02 Thread Christian Weber
Sorry again I missed to write that openssl asn1parse does work on the file. The file has been generated esternally (i.e. by german telesec), so we need to know what's wrong with the data to openssl. Marco Roeland wrote: > On Friday September 2nd 2005 Christian Weber wrote: > > &

PKCS7: decoding failed

2005-09-02 Thread Christian Weber
5lF+dR4/JioXiYxVdgBLPXDp95xNUXC2etx4gtKDNtgVXA6BlyjvNZ6CrMV+32Uv C6ozizLMGeQzS+lM6jEA -END PKCS7- TIA -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on InfoTech visit http://www.InfoTech.de/ __ OpenSSL

Re: MS VC 5: compilation fails

2005-07-14 Thread Christian Weber
r by rearranging the code in > that module, but it's a hit and miss approach. Upgrading to a newer > compiler should fix the problem (since this builds fine under VC6 and up). > > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Behalf O

MS VC 5: compilation fails

2005-07-12 Thread Christian Weber
chnical Support command on the Visual C++ > Help menu, or open the Technical Support help file for more information > NMAKE : fatal error U1077: 'cl' : return code '0x2' > Stop. Is there any cure known? TIA -- Christian Weber ma

Base64 encoding bug?

2005-05-20 Thread Christian Weber
K/oixe9GJksDm+bi3tRhVueZfDLFlMApuBqwsqSXkVJJSD++3NOWQJkvTRAH7 nnG1d9aULRodW3iVbSkSOPXsECPb7u9D5WWs8OS3TZ7PvEKHEmVt3Qmd44hJsbXW 2yfLUrptSC1DcGrvvc9eRSb2g1o= . -- snapp -- Thanks in advance -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on InfoTech visit http://www.InfoTech.de/ _

How to handle metadata when signing

2005-02-22 Thread Christian Weber
approach is the signature itself. How about integrating the metadata within the signature's ASN structure? Do you hava any recommendation for location and propoer OIDs? Any hint to RFCs concerning this topic? TIA -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on Inf

Unresolved external EVP_sha1

2004-12-03 Thread Christian Weber
lib into the borland projects. Since the latest version 0.9.7e of 10/25 we get an error message from the linker: "Unresolved external EVP_sha1" EVP_md5() and EVP_dss() both do work (with the same lib. Is this a known problem? Any Solution? Thanks in advance -- Christian Weber mai

OCSP Response telesek

2004-06-23 Thread Christian Weber
== thanks in advance again -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on InfoTech visit http://www.InfoTech.de/ __ OpenSSL

OSCP Resonse signtrust

2004-06-23 Thread Christian Weber
GFCsDM+Zux986oT fFvcPomn1rnR+m/mmoZGxDRMM4Nwt7+YPJ83u7+7LGnEM3uueyx4z/nu5LFAyIHE uEdaVNnjdem40j/6hjxd64ayBB6CuZyVC5I5GWE7TYjr5kP/hu9E1w4tzrP08C5V kb7vu2Cz Sorry, i had to code it this way to get it into the list. Thanks in advance --

Howto add signed attributes in mails

2003-12-31 Thread Christian Weber
s as mentioned above? Thanks for hints. -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on InfoTech visit http://www.InfoTech.de __ OpenSSL Project http://www.openssl.org

BIO Handling

2003-02-28 Thread Christian Weber
agation of the memory data through the filter BIO be triggered? Thanks in advance -- Christian Weber mailto:[EMAIL PROTECTED]Tel: 02361/91300 For information on InfoTech visit http://www.InfoTech.de __ OpenS