[openssl-dev] pkcs12 settings, Was: Re: [openssl.org #4588] pkcs12 -info doesn't handle PKCS#12 files with PKCS#5 v2.0 PBE

Hubert Kario hkario at redhat.com
Tue Jul 19 13:51:17 UTC 2016


On Tuesday, 19 July 2016 12:07:33 CEST Stephen Henson via RT wrote:
> Thanks for the report, fixed now in master and 1.0.2.
> 
> Steve.

Thanks!

I have few questions now though:

I've noticed that 1.0.2 uses sha1 hmac for the PRF while the master
uses sha256

is there a way to set this?

also, is there a way to report the MAC algorithm used over the whole
file (the one set using -macalg)

-- 
Regards,
Hubert Kario
Senior Quality Engineer, QE BaseOS Security team
Web: www.cz.redhat.com
Red Hat Czech s.r.o., Purkyňova 99/71, 612 45, Brno, Czech Republic
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: This is a digitally signed message part.
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20160719/cef98870/attachment.sig>


More information about the openssl-dev mailing list