[tor-bugs] #10383 [Tor bundles/installation]: TBB 3.5's OpenSSL was not built with NIST P224 and P256 curve support

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Jan 15 20:12:53 UTC 2014


#10383: TBB 3.5's OpenSSL was not built with NIST P224 and P256 curve support
------------------------------------------+-------------------------
     Reporter:  isis                      |      Owner:  isis
         Type:  defect                    |     Status:  closed
     Priority:  normal                    |  Milestone:
    Component:  Tor bundles/installation  |    Version:
   Resolution:  fixed                     |   Keywords:  easy,gitian
Actual Points:                            |  Parent ID:
       Points:                            |
------------------------------------------+-------------------------
Changes (by mikeperry):

 * status:  needs_review => closed
 * resolution:   => fixed


Comment:

 Merged. All hail the NSA! We can totally trust their crypto primitives,
 right?

 Out of curiosity, does anyone have any idea if the accelerated versions of
 the curves are any more or less safe against sidechannel/implementation
 issues than the default versions? Did agl write both versions?

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/10383#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list