From: Yann E. MORIN <yann.morin.1998@free.fr>
To: buildroot@busybox.net
Subject: [Buildroot] [External] Re: [PATCH 1/1] package/libopenssl: add option to enable some features
Date: Wed, 19 May 2021 16:17:24 +0200 [thread overview]
Message-ID: <20210519141724.GX2268078@scaer> (raw)
In-Reply-To: <DM2P110MB01051BDEDB77556563850C07F22B9@DM2P110MB0105.NAMP110.PROD.OUTLOOK.COM>
Matthew, All,
On 2021-05-19 13:31 +0000, Weber, Matthew L Collins via buildroot spake thusly:
> On 2020-05-11 15:21 +0200, Erwan GAUTRON spake thusly:
> > From: "GAUTRON, Erwan" <erwan.gautron@bertin.fr>
> >
> > Openssl implements lot of algorithms that are not required in
> > some emdedded devices and cyphers known as weak.
> > Secure embedded systems shall disable unused algorithms (and weak algo)
> > in order to be certified.
> > This patch allows to select weak algorithms and mecanims to enable
> > such as md5
> > To ensure backward compatibility, all items are selected by default
> >
> > Signed-off-by: Erwan GAUTRON <erwan.gautron@bertin.fr>
> I noticed a build failure related to no-md5. Were there cases where some of these weren't defined?
> http://autobuild.buildroot.net/results/9d79c9f313ff989449e9b47c1ff0afd3a167fd2d/
As per CHANGES in the openssl tree:
Changes between 1.0.2h and 1.1.0 [25 Aug 2016]
[--SNIP--]
*) Remove the no-aes, no-hmac, no-rsa, no-sha and no-md5 Configure options.
So, this can't have really worked with a recent openssl, in fact...
Care to send a fixup patch dropping the md5 option, please?
Regards,
Yann E. MORIN.
--
.-----------------.--------------------.------------------.--------------------.
| Yann E. MORIN | Real-Time Embedded | /"\ ASCII RIBBON | Erics' conspiracy: |
| +33 662 376 056 | Software Designer | \ / CAMPAIGN | ___ |
| +33 561 099 427 `------------.-------: X AGAINST | \e/ There is no |
| http://ymorin.is-a-geek.org/ | _/*\_ | / \ HTML MAIL | v conspiracy. |
'------------------------------^-------^------------------^--------------------'
prev parent reply other threads:[~2021-05-19 14:17 UTC|newest]
Thread overview: 4+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-05-11 13:21 [Buildroot] [PATCH 1/1] package/libopenssl: add option to enable some features Erwan GAUTRON
2021-05-16 17:09 ` Yann E. MORIN
2021-05-19 13:31 ` [Buildroot] [External] " Weber, Matthew L Collins
2021-05-19 14:17 ` Yann E. MORIN [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20210519141724.GX2268078@scaer \
--to=yann.morin.1998@free.fr \
--cc=buildroot@busybox.net \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.