OpenSSL STATUS Last modified at
- ______________ $Date: 2002/02/20 14:07:07 $
+ ______________ $Date: 2002/05/09 23:53:01 $
DEVELOPMENT STATE
o OpenSSL 0.9.7: Under development...
+ o OpenSSL 0.9.6d: Released on May 9th, 2002
o OpenSSL 0.9.6c: Released on December 21st, 2001
o OpenSSL 0.9.6b: Released on July 9th, 2001
o OpenSSL 0.9.6a: Released on April 5th, 2001
RELEASE SHOWSTOPPERS
- o BIGNUM library failures on 64-bit platforms (0.9.7-dev):
- - BN_mod_mul verificiation (bc) fails for solaris64-sparcv9-cc
-
- Checked on Result
- alpha-cc (Tru64 version 4.0) works
- linux-alpha+bwx-gcc doesn't work. Reported by
- Sean O'Riordain <seanpor@acm.org>
-
- Needs checked on
- [add platforms here]
-
AVAILABLE PATCHES
o
NEEDS PATCH
- o An (optional) countermeasure against the predictable-IV CBC
- weakness in SSL/TLS should be added; see
- http://www.openssl.org/~bodo/tls-cbc.txt
-
- o All 'openssl' subprograms taking '-des' and '-des3' options should
- include AES support (0.9.7-dev)
-
- o 'openssl speed' should include AES support (0.9.7-dev)
-
o apps/ca.c: "Sign the certificate?" - "n" creates empty certificate file
o Whenever strncpy is used, make sure the resulting string is NULL-terminated
WISHES
- o Add variants of DH_generate_parameters() and BN_generate_prime() [etc?]
- where the callback function can request that the function be aborted.
- [Gregory Stark <ghstark@pobox.com>, <rayyang2000@yahoo.com>]
-
o SRP in TLS.
[wished by:
Dj <derek@yo.net>, Tom Wu <tom@arcot.com>,