Welcome, Guest. Please login or register.

Author Topic: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?  (Read 7028 times)

Description:

0 Members and 1 Guest are viewing this topic.

Offline kvasir

  • Full Member
  • ***
  • Join Date: Aug 2004
  • Posts: 249
    • Show only replies by kvasir
    • http://watertonian.freeiz.com/1200brag/index.html
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #44 from previous page: November 08, 2014, 10:02:51 PM »
OK, just tried using Aweb to log into Facebook ( m.facebook.com ), and it worked. Though, the os3.9 version of Aweb seems to work while any I've downloaded doesn't for some reason. Wish Ibrowse could be made to work though, because its alot faster. With this working right on an Amiga browser, perhaps a general https: proxy server compiled for AOS would work?
--
Amiga 1200T 68060 50MHZ 192MB Fast
 40GB IDE, 100MB Zip, CD/RW, DVD/Rom
 Mediator+ 4MBSVGA, Soundblaster, 100mbps Ethernet
 Subway USB+ endless list of gadgets :-D
My full specs
 

Offline kolla

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #45 on: November 09, 2014, 09:25:50 AM »
Olsen, clearly you do not understand that the transition is already happening, and it is IPv4 that is left behind. Here is an example of what is going on...

https://sites.google.com/site/tmoipv6/lg-mytouch
B5D6A1D019D5D45BCC56F4782AC220D8B3E2A6CC
---
A3000/060CSPPC+CVPPC/128MB + 256MB BigRAM/Deneb USB
A4000/CS060/Mediator4000Di/Voodoo5/128MB
A1200/Blz1260/IndyAGA/192MB
A1200/Blz1260/64MB
A1200/Blz1230III/32MB
A1200/ACA1221
A600/V600v2/Subway USB
A600/Apollo630/32MB
A600/A6095
CD32/SX32/32MB/Plipbox
CD32/TF328
A500/V500v2
A500/MTec520
CDTV
MiSTer, MiST, FleaFPGAs and original Minimig
Peg1, SAM440 and Mac minis with MorphOS
 

Offline slaapliedjeTopic starter

  • Lifetime Member
  • Hero Member
  • *****
  • Join Date: Oct 2010
  • Posts: 843
  • Country: 00
  • Thanked: 1 times
    • Show only replies by slaapliedje
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #46 on: November 10, 2014, 01:03:34 AM »
https://wiki.debian.org/DebianIPv6

I figure all I'd have to do for when / if IPv4 ever goes away, is to set up a relay router as per that wiki page.  But there isn't really a way for https to work this way, unless I attempt to do some sort of proxy configuration, which decrypts the info in the proxy and allows the Amiga to display it.  This is possible, but not very 'secure'.  

slaapliedje
A4000D: Mediator 4000Di; Voodoo 3, ZorRAM 128MB, 10/100mb Ethernet, Spider 2. Cyberstorm PPC 060/50 604e/420.
 

Offline olsen

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #47 on: November 10, 2014, 08:15:20 AM »
Quote from: kolla;776958
Olsen, clearly you do not understand that the transition is already happening, and it is IPv4 that is left behind.

I understand that it is underway, my point was just that with the type of devices that are still IPv4 only, cannot be easily upgraded if at all, and are installed in sufficient numbers, you can't just force a switch to IPv6 without taking care of your customers.

For example, one German ISP ran out of IPv4 address space and had to use IPv6 for new customers. Those customers who owned game consoles (XBOX360, PS3, etc.) found that they could no longer go online, because these devices supported only IPv4 operations and the ISP's NAT was not up to the task. As far as I know even the current console generation (XBOX One, PS4, WII-U) is not entirely IPv6 compliant yet, part of which may be due to how the game server infrastructure operates, and what happens if players which use IPv4 and IPv6 need to talk to one another.

A game console is the type of device which I have in mind when it comes to make a transition from IPv4 to IPv6 easier because the manufacturer may not be particularly helpful, the device is not cheap and is not easily replaceable during the next product cycle (6-7 years for a game console?).

I do realize that ISPs and carriers are itching to get rid of IPv4, especially if their customer base is very large. A corporation such as Comcast probably has its subscribers NAT'ed several layers deep to avoid running out of public IPv4 address space. Never mind the cost, it makes the network operation unnecessarily, if not nightmarishly complex.

Quote
Here is an example of what is going on...

https://sites.google.com/site/tmoipv6/lg-mytouch

This looks like the ideal and maybe typical case for carriers: very large number of subscribers (T-Com USA has more than 50 million customers, or so), big network which spans the entire continent, and squeezing all this into a set of IPv4 address ranges is just expensive trouble waiting to happen. T-Com can make that switch rather easily, as customers can replace their gear within 1-2 phone product cycles (1-2 years, probably less).

If the customers use the phones provided by T-Com, replacing the phones that don't do well in an IPv6 environment becomes even more convenient. The customers may not even notice the cost for the phone replacement because it happens along the normal technological upgrade path (say, you keep your iPhone for two years and trade up for the new model).
« Last Edit: November 10, 2014, 12:52:46 PM by olsen »
 

Offline gregthecanuck

  • Full Member
  • ***
  • Join Date: Feb 2003
  • Posts: 169
  • Country: ca
    • Show only replies by gregthecanuck
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #48 on: October 17, 2016, 11:59:29 AM »
@thread

Some good news on AmiSSL4.

I recently communicated with Jens Maus on the status. He hopes to have this out by the end of November. This includes bringing in the most recent OpenSSL patches.

This isn't a promise but fingers crossed we see this by the end of the year. This is a multi-platform release (68K, OS4, MorphOS, AROS).

Here is the Github page:  https://github.com/jens-maus/amissl
 

Offline Rotzloeffel

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #49 on: October 17, 2016, 01:12:06 PM »
Wow! Great news !
Save Planet Earth! It is the only one in the galaxy with fresh and cold beer :laughing:
 

Offline Robbie

  • Full Member
  • ***
  • Join Date: Feb 2002
  • Posts: 245
    • Show only replies by Robbie
    • http://uponthevoid.com
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #50 on: October 17, 2016, 01:53:01 PM »
i'll second that - significant, brilliant news!
 

Offline slaapliedjeTopic starter

  • Lifetime Member
  • Hero Member
  • *****
  • Join Date: Oct 2010
  • Posts: 843
  • Country: 00
  • Thanked: 1 times
    • Show only replies by slaapliedje
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #51 on: October 17, 2016, 02:37:30 PM »
Awesome!  One of the key components of keeping the Amiga 'modern'.

With how many systems the upstream source supports, I'm honestly surprised the ever dropped support for Amiga.  I think it still has support for some really old systems, which is why a lot of it was ditched while making LibreSSL from what I'd read.
A4000D: Mediator 4000Di; Voodoo 3, ZorRAM 128MB, 10/100mb Ethernet, Spider 2. Cyberstorm PPC 060/50 604e/420.
 

Offline LoadWB

  • Hero Member
  • *****
  • Join Date: Jul 2006
  • Posts: 2901
  • Country: 00
    • Show only replies by LoadWB
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #52 on: October 17, 2016, 04:08:15 PM »
Very exciting, indeed.  This re-opens much usability with Amiga Internet utilities.
 

Offline Lizard

  • Full Member
  • ***
  • Join Date: May 2007
  • Posts: 195
    • Show only replies by Lizard
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #53 on: October 17, 2016, 04:10:21 PM »
While this is good news, keep in mind a new AmiSSL won't fix the problems we have now.
Also the applications (browser, ftp client) using AmiSSL need to be updated in order to support TLS 1.x
 

Offline Sir_Lucas

  • Full Member
  • ***
  • Join Date: Jul 2006
  • Posts: 171
    • Show only replies by Sir_Lucas
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #54 on: October 17, 2016, 09:50:52 PM »
Sounds really promising!! Looking forward to this new release. Fingers crossed!!
 

Offline Oldsmobile_Mike

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #55 on: November 10, 2016, 03:43:30 AM »
Just saw this on Aminet:

http://aminet.net/package/util/libs/AmiSSL-3.6-68k

Has anybody tried it yet?  How's it work?
Amiga 500: 2MB Chip|16MB Fast|30MHz 68030+68882|3.9|Indivision ECS|GVP A500HD+|Mechware card reader + 8GB CF|Cocolino|SCSI DVD-RAM
Amiga 2000: 2MB Chip|136MB Fast|50MHz 68060|3.9|Indivision ECS + GVP Spectrum|Mechware card reader + 8GB CF|AD516|X-Surf 100|RapidRoad|Cocolino|SCSI CD-RW
 Amiga videos and other misc. stuff at https://www.youtube.com/CompTechMike/videos
 

Offline eliyahu

  • Lifetime Member
  • Global Moderator
  • Hero Member
  • *****
  • Join Date: Jan 2011
  • Posts: 1220
  • Country: us
  • Thanked: 4 times
  • Gender: Male
    • Show only replies by eliyahu
    • eliyahu.org
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #56 on: November 10, 2016, 04:30:21 AM »
@Oldsmobile_Mike

isn't that the release from 2006, though?

-- eliyahu
"How do you know I’m mad?" said Alice.
"You must be," said the Cat, "or you wouldn’t have come here."
 

Offline Oldsmobile_Mike

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #57 on: November 10, 2016, 05:07:00 AM »
I don't pretend to know. It was uploaded 11/5/2016.
Amiga 500: 2MB Chip|16MB Fast|30MHz 68030+68882|3.9|Indivision ECS|GVP A500HD+|Mechware card reader + 8GB CF|Cocolino|SCSI DVD-RAM
Amiga 2000: 2MB Chip|136MB Fast|50MHz 68060|3.9|Indivision ECS + GVP Spectrum|Mechware card reader + 8GB CF|AD516|X-Surf 100|RapidRoad|Cocolino|SCSI CD-RW
 Amiga videos and other misc. stuff at https://www.youtube.com/CompTechMike/videos
 

Offline cla

  • Newbie
  • *
  • Join Date: Nov 2014
  • Posts: 1
    • Show only replies by cla
Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #58 on: November 10, 2016, 10:40:41 PM »
I uploaded the package and it is the old one. Just wanted to make it available through aminet.
 

Offline Oldsmobile_Mike

Re: AmiSSL / OpenSSL updates to support TLSv1.1/1.2?
« Reply #59 on: November 10, 2016, 11:01:01 PM »
Aww, boo.  :(
Amiga 500: 2MB Chip|16MB Fast|30MHz 68030+68882|3.9|Indivision ECS|GVP A500HD+|Mechware card reader + 8GB CF|Cocolino|SCSI DVD-RAM
Amiga 2000: 2MB Chip|136MB Fast|50MHz 68060|3.9|Indivision ECS + GVP Spectrum|Mechware card reader + 8GB CF|AD516|X-Surf 100|RapidRoad|Cocolino|SCSI CD-RW
 Amiga videos and other misc. stuff at https://www.youtube.com/CompTechMike/videos