Re: [PATCH] Fix compile with OpenSSL 1.1.0 and deprecated APIs

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Wed, 2019-03-13 at 17:40 -0700, Rosen Penev wrote:
> OPENSSL_init is implicit with OpenSSL 1.1. There's no need to call it
> unless some non-default setting is needed (not loading error strings
> for example).

My empirical observation is that with OpenSSL 1.1.0g, engines aren't
working unless I remove the #ifdef and let ENGINE_load_dynamic() get
called. How did you test this, and with which version(s) of OpenSSL?

With the #ifdef:

ENGINE: Loading dynamic engine
ENGINE: Loading OpenSC Engine from /home/dwmw/git/openssl_tpm2_engine/.libs/libtpm2.so
ENGINE: Can't find engine dynamic [error:2606A074:engine routines:ENGINE_by_id:no such engine]
SSL: Failed to initialize TLS context.

Reverting it:

ENGINE: Loading dynamic engine
ENGINE: Loading OpenSC Engine from /home/dwmw/git/openssl_tpm2_engine/.libs/libtpm2.so
ENGINE: engine 'tpm2' is already available
ENGINE: Loading dynamic engine
ENGINE: Loading OpenSC Engine from /home/dwmw/git/openssl_tpm2_engine/.libs/libtpm2.so
ENGINE: engine 'tpm2' is already available

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
Hostap mailing list
Hostap@xxxxxxxxxxxxxxxxxxx
http://lists.infradead.org/mailman/listinfo/hostap

[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]

  Powered by Linux