As you might imagine we've continued investigating the overall impact. I've been told that in addition to IAIK that Bouncy Castle had similar issues. We are also aware of customers that will be impacted by the upcoming releases if certificates with fractional time fails to verify.
I think it's important to maintain interoperability even in the event that there are minor profile violations. If there is anything I can do to help move this forward please let me know. Thanks ! Barry [http://www.cisco.com/web/europe/images/email/signature/tomorrow_anthem_H.png] Barry Fussell Technical Leader Security & Trust Organization [email protected]<mailto:[email protected]> Phone: +1 919 392 2920 Cisco Systems, Inc. 7025-2 Kit Creek Road Research Triangle Park, NC 27709 United States Cisco.com<http://www.cisco.com/> [http://www.cisco.com/assets/swa/img/thinkbeforeyouprint.gif]Think before you print. This email may contain confidential and privileged material for the sole use of the intended recipient. Any review, use, distribution or disclosure by others is strictly prohibited. If you are not the intended recipient (or authorized to receive for the recipient), please contact the sender by reply email and delete all copies of this message. Please click here<http://www.cisco.com/web/about/doing_business/legal/cri/index.html> for Company Registration Information.
_______________________________________________ openssl-project mailing list [email protected] https://mta.openssl.org/mailman/listinfo/openssl-project
