Key Rotation over a long-lived SSL connection

2007-11-02 Thread Paul Simon
Hi, Folks, I have a long lived SSL connection which I'd like to create a new symmetric key every hour. Can someone shed some example or tips how to do it? Thanks ahead * http://RateMyBossCafe.com Leverage the Wisdom of Crowds

How to do SSL key rotation over a long lived connection

2007-03-15 Thread Paul Simon
Hi, folks, Does anyone know how can the encryption key used to secure SSL communication be changed/rotated over a long-lived (hours to days) SSL connection to prevent sniffers from deciphering the key by analyzing a arge amount of traffic? Thanks for comments Paul ___

Re: please help me on OCSP

2005-08-24 Thread Paul Simon
+YWdT4cDohuSqEeu+x5R -END CERTIFICATE- --- satish danduvarma <[EMAIL PROTECTED]> wrote: > Hi Paul, >Thats great. Thanks for your quick response. > What is tgv.pem file. how can we get that file. > > Thanks in advance, > Varma > > On 8/24/05, Paul Simon <[EMA

Re: please help me on OCSP

2005-08-24 Thread Paul Simon
Maybe your URL is wrong. I just tried this: openssl ocsp -issuer VeriSignClientECA.pem -url http://ocsp.verisign.com -cert eca_usr_cert.pem -VAfile tgv.pem -no_nonce -text and it works fine as follows: D:\prjs\ocsp\newEcaCA>openssl ocsp -issuer VeriSignClientECA.pem -url http://ocs p.verisign.co