ssl + SOCK_SEQPACKET

2003-12-31 Thread Hannes Matuschek
Is it possible to use openssl with SOCK_SEQPACKET connections??? I tryed it, but ssl_accept and/or ssl_connect don't return in blocking mode and booth want to read in non-blocking mode. Hannes Matuschek. -- +++ GMX - die erste Adresse für Mail, Message, More +++ Neu: Preissenkung für MMS und F

Howto add signed attributes in mails

2003-12-31 Thread Christian Weber
Dear OpenSSL user, does anybody have a hint how to add a signed attribute during signing with smime? Further: which OID should be taken to add a attribute like "siged on behalf of..." or "representing (a function)". In which order should that OID be added to the other signed attirbutes (like signi

RE: Occasional ssl23_read() failure

2003-12-31 Thread Francis.Vanhemmens
Well when you stay on F5 key, you force Internet Explorer to close the current connections and recreate new ones. ( It may even multiply the number of simultaneous connections as well. You can end up with 20 simultaneous connections for example, instead of the normal 2 to 4 ones ) Some maybe be

FIPS Certification

2003-12-31 Thread Tal Mozes
Hi, I just ran into this article (http://www.gcn.com/vol1_no1/daily-updates/24504-1.html) which title is "OpenSSL gets FIPS certification". There was also a link to the article on the last SANS NewsBites (Vol.5 Num.52, see http://portal.sans.org/). >From what I read in the websites of NIST and OS

Re: Howto add signed attributes in mails

2003-12-31 Thread Dr. Stephen Henson
On Wed, Dec 31, 2003, Christian Weber wrote: > Dear OpenSSL user, > > does anybody have a hint how to add a signed attribute during signing > with smime? Further: which OID should be taken to add a attribute like > "siged on behalf of..." or "representing (a function)". > You need to use the lo

Re: Occasional ssl23_read() failure

2003-12-31 Thread Dr. Stephen Henson
On Wed, Dec 31, 2003, Francis.Vanhemmens wrote: > Well when you stay on F5 key, you force Internet Explorer to close the current > connections and recreate new ones. ( It may even multiply the number of simultaneous > connections as well. You can end up with 20 simultaneous connections for examp

verify a signed file programmatically

2003-12-31 Thread Griff Miller
I sent this on the 23rd, but I haven't seen it show up yet in the archives. Perhaps I have to actually be a member of the list to post (though the information at http://www.openssl.org/support/ suggests otherwise) . I just subscribed, and am posting again. So please forgive me if this crops up twic

Re: verify a signed file programmatically

2003-12-31 Thread Dr. Stephen Henson
On Wed, Dec 31, 2003, Griff Miller wrote: > I sent this on the 23rd, but I haven't seen it show up yet in the archives. > Perhaps I have to actually be a member of the list to post (though the > information at http://www.openssl.org/support/ suggests otherwise) . > I just subscribed, and am postin

Re: ssl + SOCK_SEQPACKET

2003-12-31 Thread Ng Pheng Siong
On Wed, Dec 31, 2003 at 10:52:31AM +0100, Hannes Matuschek wrote: > Is it possible to use openssl with SOCK_SEQPACKET connections??? Why, if one may ask? > I tryed it, but ssl_accept and/or ssl_connect don't return in blocking mode > and booth want to read in non-blocking mode. FreeBSD socket m

Re: verify a signed file programmatically

2003-12-31 Thread Griff Miller
"Dr. Stephen Henson" wrote: > > As you've no doubt realised such license schemes are not very secure. Right, but it's going to be a lot better than nothing. :) > A few well placed NOPs will circumvent many of them. This seems to be the main weakness in just about any license key scheme, i.e. h

Re: FIPS Certification

2003-12-31 Thread Ben Laurie
Tal Mozes wrote: Hi, I just ran into this article (http://www.gcn.com/vol1_no1/daily-updates/24504-1.html) which title is "OpenSSL gets FIPS certification". There was also a link to the article on the last SANS NewsBites (Vol.5 Num.52, see http://portal.sans.org/). From what I read in the website