help with SSL error response

1999-06-19 Thread Anonymous
I get the error message "curl: SSL: couldn't get peer certificate!" when I attempt to access a web site via https. I'm using this with the curl tool as you can see. I have had success fetching https pages fron another web site, but this particular one requires a user password handshake. Being a n

Re: Stunnel 3.3

1999-06-19 Thread Anonymous
[EMAIL PROTECTED] wrote: > > "Michal Trojnara" <[EMAIL PROTECTED]> ,in message centertel.pl>, wrote: > > > Stunnel 3.3 has been released. > > URL please? > > And, how does it compare to ssl-auth: > > http://web.purplefrog.com/~thoth/netpipes/ssl-auth.html > > Speaking of ssl-a

Re: Problem with s_client on WinNT

1999-06-19 Thread Anonymous
Martin Glas <[EMAIL PROTECTED]>: > I have a problem with openssl-0.9.[0123] on WinNT 4.0 SP3. > I compiled it using VC-6 (and also mingw32) [...] cannot connect to > a SSL server properly (neither using 'openssl s_client -connect...' > nor doing a request from the Net:SSLeay package). I get the

Re: S/MIME support in 0.9.3a -where?

1999-06-19 Thread Anonymous
Michael Konietzka wrote: > > > i compiled it with example.c, but i get some trouble with self-signed > certificates > i added some code to verify.c to add a cert from file with code like > this: > > webde=X509_new(); > if (webde==NULL) printf ("Creating of X509 failed\n"); >

Re: X509 v3 basic constraints extension

1999-06-19 Thread Anonymous
Dave Clark wrote: > > Hello all; > > New OpenSSL user here who's trying to get up to speed on the X509 > component as quickly as possible ... also new to certificates ... > forgive the novice question. > > I'm using X509_get_ext() and X509_EXTENSION_get_data(ext) in an attempt > to get the basi

Re: Request verification failure

1999-06-19 Thread Anonymous
[EMAIL PROTECTED] gives an error message, so I repost here (in the hope that the address used for mailing list subscription works better). - Forwarded message from Mail Delivery Subsystem - [...] ... while talking to pop.spectraweb.ch.: >>> RCPT To:<[EMAIL PROTECTED]> <<< 550 RCPT <[EMAI

T.61 Strings?

1999-06-19 Thread Anonymous
HI! Does anybody have a specification for the T.61 string format which is used for non-ASCII characters in certs and the cert DB? Or you might point out a place in the OpenSSL sources where the character translation is done? Ciao, Michael.

Re: X509v3 functions

1999-06-19 Thread Anonymous
Mike Foster wrote: > > I have noticed that a number of X509v3 functions were removed from the > OpenSSL library between versions 0.9.2b and 0.9.3, including > X509v3_add_standard_extensions() and x509v3_add_netscape_extensions(). Are > these functions no longer necessary? Thanks. > Yes they are

Re:

1999-06-19 Thread Dr Stephen Henson
Pierre De Boeck wrote: > > Hi all, > > I had a little problem with the pkcs12 library. > > When I added a friendly-name attibute in a PKCS12_SAFEBAG > SafeBag object (for a certificate or a shrouded > PKCS8 key), it works well except that when I imported > the pfx file into IE 5.x, the

OS suport

1999-06-19 Thread Anonymous
Very cool your OpenSSL idea. But a question remains with no answer for me: what web servers OpenSSL is compatible? May I use it on my IIS 4.0 or only on Apache web servers? Thank you very much and congratulations for the iniciative Paulo ___

pyCA-0.5.3 - tools for setting up a certificate authority

1999-06-19 Thread Anonymous
HI! I would like to announce a new beta release of my package pyCA, a set of scripts and CGI-BIN programs written in Python for setting up and running a certificate authority using OpenSSL. See http://sites.inka.de/ms/python/pyca/ for more details. I would like to ask for feedback of people

Re: 0.9.3 and 0.9.3a

1999-06-19 Thread Anonymous
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 > "Bodo" == Bodo Moeller <[EMAIL PROTECTED]> writes: Bodo> Holger Reif pointed out that this is a known server bug for Bodo> which a workaround exists (openssl s_client -bugs enables the Bodo> whole bunch of them). In this case, the Bodo> SSL_OP