Re: x509 AlgorithmIdentifier parameters
From: Philip Martin <philip_at_codematters.co.uk>
Date: Sat, 03 Feb 2018 13:46:50 +0000
Philip Martin <philip_at_codematters.co.uk> writes:
> Philip Martin <philip_at_codematters.co.uk> writes:
Another data point: the behaviour varies between openssl 1.0 and openssl
[Sat Feb 03 10:18:03.858279 2018] [ssl:emerg] [pid 2717:tid 139629607192448] SSL Library Error: error:140AB18E:SSL routines:SSL_CTX_use_certificate:ca md too weak
With openssl 1.0 the server does start. I'm using openssl 1.1 to
A client using openssl 1.0 will connect to a server serving the
$ openssl s_client -connect localhost:8887 -CAfile apache2/ssl/ca-cert.pem
This suggests that RSASSA-PSS is obsolete, but as I mentioned earlier in
https://github.com/openssl/openssl/issues/2878
-- PhilipReceived on 2018-02-03 14:46:59 CET |
This is an archived mail posted to the Subversion Dev mailing list.
This site is subject to the Apache Privacy Policy and the Apache Public Forum Archive Policy.