Re: TLSv1 and SSLv3 client_key_exchange Encryption-block formatting

2010-05-07 Thread Nelson B Bolyard
On 2010/05/07 12:16 PDT, Klaus Heinrich Kiwi wrote: > On Tue, 04 May 2010 09:28:58 -0700 > Nelson B Bolyard wrote: >> It's all handled by the SSL library. > > Nelson, > > but when implementing a PKCS#11 token, we should be performing the > PKCS#11 v1.5 padding for the CKM_RSA_PKCS method, rig

Re: TLSv1 and SSLv3 client_key_exchange Encryption-block formatting

2010-05-07 Thread Klaus Heinrich Kiwi
On Tue, 04 May 2010 09:28:58 -0700 Nelson B Bolyard wrote: > On 2010-05-04 05:41 PST, Ramon de Carvalho Valle wrote: > > >>> SSLTAP shows the ClientKeyExchange message length in > >>> client_key_exchange (16) is 130 (0x82) for TLSv1 and 128 (0x80) > >>> for SSLv3. > >> Yes, that is a difference

Re: NSS 3.12.6 release notes

2010-05-07 Thread M.Hunstock
Am 06.05.2010 23:22, schrieb Wan-Teh Chang: > Matthias, thank you for reporting the broken link. I went through > the NSS 3.12.5 and 3.12.6 release notes and fixed all the broken > links. I had that other problem and tried to get the source to have a look how things are done. Additionally I wa