-
Notifications
You must be signed in to change notification settings - Fork 171
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
利用Tongsuo验证国密ssl #523
Comments
我现在用铜锁和guanzhi的GMSSL互相访问,但是发现,两者无法互通,只用tongsuo对tongsuo,gmssl对gmssl才通
然后我使用铜锁作为服务端,gmssl作为客户端,客户端报错如下
看现象是两者不通,老师,帮忙看下吧,能看出有什么原因吗 |
国密实现各自有一套独立的 x509 定义,互不兼容… |
铜锁在获取软件密码模块安全一级资质的过程中,在国密局商用密码检测中心的检测项里是有TLCP客户端和TLCP服务器端的兼容性测试,通过后才给予资质的发放,所以铜锁和测试标准是兼容的 |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
请教一个问题,困扰很长时间没搞定,openssl版本如下
openssl version BabaSSL 8.3.2 OpenSSL 1.1.1h 22 Sep 2020
我利用国密双证书,server_sign.crt server_enc.crt,以及CA证书 root.crt启动服务端和客户端的例子,请问这两个双证书如何使用,
服务启动:
openssl s_server -port 15003 -key tlcp-server-sign.key -cert tlcp-server-sign.crt -dkey tlcp-server-enc.key -dcert tlcp-server-enc.crt -CAfile cas.pem
现在不知道客户端如何启动,我的客户端也是双证书的
The text was updated successfully, but these errors were encountered: