Skip to content

Undocumented critical parameter #15998

@mouse07410

Description

@mouse07410

OpenSSL man pages for both 1.1.1 and 3.0 omit critical -pkeyopt parameter rsa_oaep_md:.

Without it explicitly specified, OpenSSL encryption cannot be decrypted by other tools (like OpenSC or YKCS11). See Yubico/yubico-piv-tool#309

Proposed resolution: mention rsa_oaep_md in the openssl-pkeyutl man page, and preferably add the allowed values.

Update

People already brought this up two years ago in #10174.

Metadata

Metadata

Assignees

No one assigned

    Labels

    branch: 1.1.1Applies to OpenSSL_1_1_1-stable branch (EOL)branch: masterApplies to master branchtriaged: documentationThe issue/pr deals with documentation (errors)

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions