Run openssl.exe after OPENSSL_FIPS system variable is set

2006-07-17 Thread Shicai Hu
mode_set after check getenv(OPENSSL_FIPS). So in order to truely run in FIPS mode, OPENSSL_FIPS needs to be set)   Did anybody see this error? Thanks for any suggestion.     Shicai Shicai Hu <[EMAIL PROTECTED]> wrote: In linux, I can call FIPS_mode, if return value is zero, t

FIPS_mode_set in windows

2006-07-17 Thread Shicai Hu
mode already set:fips.c:239: I think it's a problem that I can not skip?Shicai Hu <[EMAIL PROTECTED]> wrote: I am writing a sample application both in Linux and Windows using OpenSSL FIPS mode.  In both of Linux and Windows, call FIPS_mode_set in the source code, and use fipsld i

Questions on FIPS_mode_set

2006-07-14 Thread Shicai Hu
hicai   Shicai Hu <[EMAIL PROTECTED]> wrote:Yes, you are right. The problem is gone away in VC 2005 ( Unfortunately I have only VC 2005 Beta version -old, but it works). VC 2001 plus service pack 6 was installed (which caused the problem).   Thanks for the help.     Shicai"Dr

Re: Running openssl in windows XP: 984fc71618ac55c9d1bec72c007aa828b982dd9d

2006-07-14 Thread Shicai Hu
On Wed, Jul 12, 2006, Shicai Hu wrote:> Hi Dr. Henson:> > Thank you very much.> > I followed the build instruction of User Guide (page 31) to build. But when I run > > nmake -f ms\ntdll.mak> > command, first time an error message always pop up:> > "fips_premai

Re: Running openssl in windows XP: 984fc71618ac55c9d1bec72c007aa828b982dd9d

2006-07-12 Thread Shicai Hu
guration problem, or missing something? Shicai "Dr. Stephen Henson" <[EMAIL PROTECTED]> wrote: On Tue, Jul 11, 2006, Shicai Hu wrote:> Hi:>> I built FIPS version openssl-0.9.7j in windows XP. But when I run openssl to create such as dhparam, the

Running openssl in windows XP: 984fc71618ac55c9d1bec72c007aa828b982dd9d

2006-07-11 Thread Shicai Hu
Hi:   I built FIPS version openssl-0.9.7j in windows XP. But when I run openssl to create such as dhparam,  the program just print out a string of hex number: 984fc71618ac55c9d1bec72c007aa828b982dd9d   Do you have similar problem before? Thanks for any suggestions.     Microsoft (R) Program

Problems on set cipher list

2006-07-05 Thread Shicai Hu
I need to exclusively use the ciphersuites of TLS_DH_anon_WITH_AES_256_CBC_SHA. So, I called ctx = SSL_CTX_new(TLSv1_method());   and then called SSL_CTX_set_cipher_list(ctx, "ADH-AES256-SHA");Later, I want to make sure this ciphersuite is used exclusively, I called SSL_CIPHER_descripti

RC5 in openssl FIPS version (versin 7j) is disabled?

2006-05-17 Thread Shicai Hu
Hi, I am new to the openssl. I just compiled openssl FIPS version and I found out that other crypto functions are OK, but I couldn't call those RC5 crypto function. Is this due to RC5 disabled in FIPS version or RC5 is not FIPS approved? I highly appreciate for any helps.     Shicai Blab-away

Question on des.h and des_old.h in FIPS-1.0

2006-05-16 Thread Shicai Hu
There are two des header files under  /include/openssl directory, and the Makefile in fips-1.0 include both des.h and des_old.h.  The same functions defined twice in des.h and des_old.h. Why?   Thanks. Love cheap thrills? Enjoy PC-to-Phone calls to 30+ countries for just 2¢/min with Yahoo! Mes