|
From: John S. <jo...@we...> - 2007-01-13 17:31:28
|
Alan, Your in! that sounds great, I have been killing myself trying to figure = out the SSL stuff and this should teach me quite a bit :) Please join the developers mailing list so we can track these = discussions a little better. =20 I have never used skype, but I will look into it, I do however use = instant messenger and have ids on all the major providers,=20 AIM =3D=3D JohnSoutherland5 Yahoo =3D jbsouthe MSN =3D jbs...@ho...=20 Maybe we can start with that, and see if we need to speak in person. I = can also just go ahead and call you direct if need be. Once you and Juan, the other developer joining us, join the mailing list = I will send out an email detailing what I envisioned and then maybe we can toss it around and spit out something we all need and see as practicle. I originally just used a library called ExProxy written but not = opensourced by a man in France. He has somewhat disappeared off the planet and is unreachable. I always thought this should be opensourced rather than = just free so I started this project. The library is based mainly on his. It = may prove helpful to take a look at his implementation, but we can do = anything we like. I was hoping to verify all the HTTP/1.0 functionality as well as SSL = support via the CONNECT method for version 1.0.0, then start adding HTTP/1.1 TLS upgrade and misc support for version 1.1.0 or 2.0.0 as we find = appropriate. Well looks like I spelled it out here, so I will just cc Juan and the mailing list to ensure it is searchable one day ;) Later, John John Buren Southerland Principal Consultant Web Performance Group 801.467.8090(office) 214.734.8099(cell) jo...@we... =20 =20 =20 -----Original Message----- From: Alan Moran [mailto:a_j...@ya...]=20 Sent: Saturday, January 13, 2007 7:06 AM To: John Southerland Subject: RE: SSL for Java HTTP proxy library Hi John, my id is a_j_moran so go ahead and add me if you like. I'll take a closer look at what you have done and we can discuss more. >From what I understand you want to do it should be pretty straightforward so I'll try out of a couple of basic ideas and we can talk more then. BTW: I'm very much a vi-and-keep-it-simple sort of guy myself so I guess we shouldn't have any problems there, BTW: do you use skype ? it might be good if we can talk in person on occasion if we need to look at a detail closer.=20 atb, Alan. --- John Southerland <jo...@we...> schrieb: > Alan, >=20 > Yes indeed! Wonderful, please remind me of your > sourceforge id and I will > add you as a developer! >=20 > We are getting ready to reorganize the project a > little, by moving things > around and creating an ant build process, I slapped > it together and used > make, but others prefer ant, and netbeens, where I > just use vi. >=20 > I intend to keep it simple, since I am planning to > continue to use vi, so > the code should not change much, please look at > Proxy.java as that is the > main handler and has my blundering attempts at > initiating ssl after > receiving a CONNECT method request. >=20 > The goal is to toss back a temp key instead of doing > the entire hand off, > and then reading the request and carrying it out for > the user. The aim of > course is to be able to instrument the request in > between. >=20 > I look forward to working with you! >=20 > John >=20 > =20 >=20 > John Buren Southerland >=20 > Principal Consultant >=20 > <http://www.webperformancegroup.com/> Web > Performance Group >=20 > 801.467.8090(office) >=20 > 214.734.8099(cell) >=20 > <mailto:jo...@we...> > jo...@we... >=20 > =20 >=20 > =20 >=20 > =20 >=20 >=20 > _____ =20 >=20 > From: Alan Moran [mailto:a_j...@ya...]=20 > Sent: Friday, January 12, 2007 3:51 AM > To: jbs...@us... > Subject: SSL for Java HTTP proxy library >=20 > =20 >=20 > Hi John, >=20 > =20 >=20 > I gather you are looking for someone to give you > some SSL input for your > project. If you are still looking then perhaps I > can help you here. =20 >=20 > =20 >=20 > Briefly about my background: I am a security > developer (mostly C and Java) > and have experience in GSS/SSL, PKI and PKCS#n etc. > - generally I also do > things like test protocols, trace SSL and that sort > of stuff. >=20 > =20 >=20 > Look forward to hearing from you, >=20 > Alan. >=20 >=20 >=20 > --------------------------------------------------- > You can find my GPG key (a_j...@ya...) at > ETH PGP Keyserver: http://www.tik.ee.ethz.ch/~pgp/ > --------------------------------------------------- >=20 > =20 >=20 > _____ =20 >=20 > Yahoo! Messenger - kostenlos* > <http://de.rd.yahoo.com/evt=3D39058/*http:/de.messenger.yahoo.com> > mit > Familie und Freunden von PC zu PC telefonieren .=20 >=20 >=20 --------------------------------------------------- You can find my GPG key (a_j...@ya...) at ETH PGP Keyserver: http://www.tik.ee.ethz.ch/~pgp/ --------------------------------------------------- =09 =09 ___________________________________________________________=20 Der fr=FChe Vogel f=E4ngt den Wurm. Hier gelangen Sie zum neuen Yahoo! = Mail: http://mail.yahoo.de |