[openssl-users] Behaviour changed between 1.1.0 and 1.1.1
Nicola
nic.tuv at gmail.com
Fri Aug 17 15:42:04 UTC 2018
I can't reproduce the issue, using latest master for both gost and openssl:
/tmpram/gost > export OPENSSL_ENGINES=/tmpram/gost/engine/bin
/tmpram/gost > /tmpram/openssl-111-pre9-dev/bin/openssl pkey -engine gost
-pubout -text -in tmp.pem
engine "gost" set.
Private key:
28A509558DB1969DB89A4CB517D8A759EAB79A6D09FEECDAE87B03BECA604B36
/tmpram/gost > /tmpram/openssl-111-pre9-dev/bin/openssl pkey -engine gost
-pubout -text -in a.pem
engine "gost" set.
-----BEGIN PUBLIC KEY-----
MGMwHAYGKoUDAgITMBIGByqFAwICIwEGByqFAwICHgEDQwAEQORQaJaqv4S10bz4
jw112dGlrtD+DyGR8TqkhmOvlJB46VUIbpBsEHs8nn0pXtzsIfEwgV8Oxo/QA0Ri
Qu5j7SU=
-----END PUBLIC KEY-----
Private key:
46150327559001221F9F1F9A50CD9E6A0CD5F5D0ADEA6439C1DB5E9EBD994BF6
Public key:
X:789094AF6386A43AF191210FFED0AEA5D1D9750D8FF8BCD1B584BFAA966850E4
Y:25ED63EE42624403D08FC60E5F8130F121ECDC5E297D9E3C7B106C906E0855E9
Parameter set: id-GostR3410-2001-CryptoPro-A-ParamSet
On Fri, 17 Aug 2018 at 18:15, Dmitry Belyavsky <beldmit at gmail.com> wrote:
> Hello,
>
> I use my engine providing gost algorithms (
> https://github.com/gost-engine/engine). It seems not to have any relevant
> changes between 1.1.0 and current master, but the command
>
> OPENSSL_CONF=engine.conf openssl pkey -pubout -text -in tmp.pem
>
> works ok for 1.1.0 version and does not work for current master.
> For the file a.pem both versions provide similar output.
>
> engine.conf is minimal conf to load gost engine:
> =============
> openssl_conf = openssl_def
> [openssl_def]
> engines = engine_section
>
> [engine_section]
> gost = gost_section
>
> [gost_section]
> engine_id = gost
> dynamic_path = /path/to/libgost.so
> default_algorithms = ALL
> CRYPT_PARAMS = id-Gost28147-89-CryptoPro-A-ParamSet
> ===============
>
> I've found out that behavior of the
> function EC_POINT_get_affine_coordinates_GFp has changed between versions
> 1.1.0 and current master.
>
> Also I found that pkey command ignores result of the calls
> to EVP_PKEY_print_public and EVP_PKEY_print_private.
>
> Could you please clarify whether it's a bug in my engine or something
> incompatible in openssl code?
>
> Thank you!
> --
> SY, Dmitry Belyavsky
> --
> openssl-users mailing list
> To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20180817/d7310d2e/attachment-0001.html>
More information about the openssl-users
mailing list