I am looking for references as to whether Netscape's products have addressed the issues raised by Wagner and Schneier or at least a statement on Netscape's...
Dennis Glatting
dennis.glatting@...
Feb 1, 1997 7:43 pm
3867
I have two question about handshake_messages in Certificate verify and Finished. SSLv3 draft says the messages are ``all handshake messages starting at client...
Shogo SHIMIZU
simi@...
Feb 2, 1997 8:53 am
3868
... The plaintext data without the SSL record header, but with the handshake header. ... It's both sent and received messages. -- Eric Murray ericm@......
Eric Murray
ericm@...
Feb 2, 1997 5:37 pm
3869
HI I would like to test a client certificate for IE. Does someone know a nice URL ??? Thank you Stephane Samouilhan smh@......
Stephane Samouilhan
smh@...
Feb 3, 1997 9:16 am
3870
... Go ahead and point :-). ... The Netscape encoding is wrong. DER (ISO/IEC 8825-1:1994, ITU-T X.690) Section 11.5 - "Set and sequence components with default...
David P. Kemp
dpkemp@...
Feb 3, 1997 2:20 pm
3871
Howdy, I've got an application that's processing certificate requests. The user fills out a form that includes a <keygen> tag, which is sent to a CGI of mine....
Duane Morin
ddm@...
Feb 3, 1997 6:38 pm
3872
I've forwarded the bug the the appropriate parties here at netscape. --Jeff -- Jeff Weinstein - Electronic Munitions Specialist Netscape Communication...
Jeff Weinstein
jsw@...
Feb 3, 1997 8:11 pm
3873
NOT FOR RELEASE TO THE PRESS The Thawte Personal System is now in its final stage. Please the give enrollment process a whirl at: ...
Consensus Development is a rapidly growing provider of security toolkits and solutions to software developers and corporations -- for more information see...
Consensus Development...
jobs@...
Feb 4, 1997 1:29 am
3876
to whom it concernes my netscape navagator wont let me start the program from the deck top. it keeps telling me MD5 HASH check failed. file has been modified....
ml
lunchman@...
Feb 4, 1997 5:38 am
3877
Hi, Does anybody know of any SSL capable benchmark tools (like WebStone)? thanks, Jeroen +------------------------------+-----------------------------------+ ...
Jeroen de Borst
jeroen@...
Feb 4, 1997 9:16 am
3878
a security enforcing implementation which does not type check the syntax of (signed) values may well exhibit sutble flaws, and be susceptible to ...
Peter williams
petkat@...
Feb 4, 1997 9:23 am
3879
Hello, We've also been looking for a reliable solution to securely upload files through SSL for quite a long time. At that time, the only solution was to post...
Martin Proulx
proulx@...
Feb 4, 1997 4:34 pm
3880
This is a two week last call on regularizing port numbers for SSL and for TLS. If there are no objections, I send this request officially as an editor for the...
Christopher Allen
ChristopherA@...
Feb 4, 1997 6:05 pm
3881
Hi, I am devloping an Internet application, and i am at point that I need to do encryption. So i was just wondering if there a way i can detect the web...
Tim Nguyen
TNguyen@...
Feb 4, 1997 9:00 pm
3882
... Why not have them all named <PROTOCOL>s with the non-regular name as an alias ... also your list should have # comment otherwise it isn't in the right...
Tim Hudson by way of...
tjh@...
Feb 5, 1997 2:31 am
3883
... Agreed. ... The issue of the names is a legitimate problem that I wasn't sure that I wanted to address in this email -- I've not even been able to track...
Christopher Allen
ChristopherA@...
Feb 5, 1997 2:55 am
3884
forwarding some mis-mail ... Why not have them all named <PROTOCOL>s with the non-regular name as an alias ... also your list should have # comment otherwise...
Marshel C. Reed
adtllc@...
Feb 5, 1997 5:48 am
3885
Hi folks This is not strictly on topic, but it's *sorta* SSL related and gave me such a good laugh I had to share it with you. Glad to know there're people...
Mark Shuttleworth
marks@...
Feb 5, 1997 8:33 am
3886
I am currently evaluating the use of SSL within a company Intranet. Having read the doco and the FAQ I still have the following question: Can SSL encrytion be...
Neil Ingledew
neil@...
Feb 5, 1997 11:37 am
3887
... This discussion was held some time ago, and it's apparently time to have ... I too have more than some concern about the explosion of reserved port numbers...
David P. Kemp
dpkemp@...
Feb 5, 1997 2:49 pm
3888
As far as I know, X.680 (ASN.1) and X.690 (BER/DER/CER) are not available online to the public. It's not surprising that so many people have ASN.1 phobia...
David P. Kemp
dpkemp@...
Feb 5, 1997 4:00 pm
3889
Hi, I'm pleased to announce that we have released a new version (2.1.5) of the medcom SSR (Secure Socket Relay). see http://www.medcom.se/ssrssl for...
neil costigan
neil@...
Feb 5, 1997 4:32 pm
3890
David, ... -snip- ... I think that the last option is the most approiate for the internet. ... I concur. Regards, -- Jeffrey A. Williams DIR. Internet Network...
Jeff Williams
jwkckid1@...
Feb 5, 1997 6:43 pm
3891
... The session ID can be any length up to 32 bytes. In our SSL implementation, we always generate 32 bytes SIDs. ... Depends on the API. -- You should only...
Tom Weinstein
tomw@...
Feb 5, 1997 7:40 pm
3892
On Tue, 4 Feb 1997 18:39:36 -0800, Christopher Allen ... Even if we have developer committment, heck, ports below 1024 are sacred and a scarce resource. We...
Christian Kuhtz
chk@...
Feb 5, 1997 9:00 pm
3893
... This is more a philosophical argument more than a security argument, and it seems pragmatism is beating purism ;-) Also, this is more an argument about...