Re: OpenSSL security issues and FIPS.

2012-01-25 Thread Gerald L Collins
ement or government initiative expressly permitting the use of e-mail for such purpose. From: "Dr. Stephen Henson" To: openssl-users@openssl.org Date: 01/25/2012 12:44 PM Subject: Re: OpenSSL security issues and FIPS. Sent by:owner-openssl-us...@openssl.org

Re: OpenSSL security issues and FIPS.

2012-01-25 Thread Dr. Stephen Henson
On Wed, Jan 25, 2012, Gerald L Collins wrote: > Hello all, > I've been tasked to look at some security issues for our OpenSSL > implementation. We are currently at FIPS 1.2.2 and openssl 0.9.8k. Most > of the issues I was asked to look at were no issue for us, but the below > item I'm less

Re: OpenSSL security issues and FIPS.

2012-01-25 Thread Jakob Bohm
General reminder: If you (mis)use the "Reply" button in your e-mail program to start a new topic, many recipients and automated e-mail archiving systems will file your e-mail under the case/topic of the mail you "replied" to. This is because your e-mail program (correctly) includes the unique me

OpenSSL security issues and FIPS.

2012-01-25 Thread Gerald L Collins
Hello all, I've been tasked to look at some security issues for our OpenSSL implementation. We are currently at FIPS 1.2.2 and openssl 0.9.8k. Most of the issues I was asked to look at were no issue for us, but the below item I'm less certain about. Since we are FIPS does this have any chan