<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/lib/libc/crypt/cryptutil.c, branch OPENBSD_7_9_BASE</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=OPENBSD_7_9_BASE</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=OPENBSD_7_9_BASE'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2024-01-22T19:26:55+00:00</updated>
<entry>
<title>make login.conf(5) and crypt_newhash(3) and the underlying code</title>
<updated>2024-01-22T19:26:55+00:00</updated>
<author>
<name>deraadt</name>
<email></email>
</author>
<published>2024-01-22T19:26:55+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=0c727f8ea7bc10967b9f03fd9f3b59cd0b09c6b6'/>
<id>urn:sha1:0c727f8ea7bc10967b9f03fd9f3b59cd0b09c6b6</id>
<content type='text'>
consistant regarding bcrypt,a instead of blowfish,a.  "blowfish"
is a historical alias which we don't need to document as firmly
as "bcrypt".
report about difficult manual page discovery from ataraxia937
ok millert
</content>
</entry>
<entry>
<title>Wrap &lt;pwd.h&gt; so that calls go direct and the symbols are all weak.</title>
<updated>2015-09-13T15:33:48+00:00</updated>
<author>
<name>guenther</name>
<email></email>
</author>
<published>2015-09-13T15:33:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=5f424ba084ead7e716a6e98064fa03a19a93a9ac'/>
<id>urn:sha1:5f424ba084ead7e716a6e98064fa03a19a93a9ac</id>
<content type='text'>
Hide bcrypt_autorounds(), prefixing with an underbar for static builds.
</content>
</entry>
<entry>
<title>Wrap &lt;unistd.h&gt; so that internal calls go direct and they're all weak symbols</title>
<updated>2015-09-12T14:56:50+00:00</updated>
<author>
<name>guenther</name>
<email></email>
</author>
<published>2015-09-12T14:56:50+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4dbec400d163cf80f90bc9f4b22a894e932174ec'/>
<id>urn:sha1:4dbec400d163cf80f90bc9f4b22a894e932174ec</id>
<content type='text'>
Delete unused 'fd' argument from internal function oldttyname()
</content>
</entry>
<entry>
<title>permit "bcrypt" as an alias for "blowfish". this is, after all, what</title>
<updated>2015-07-23T22:19:03+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2015-07-23T22:19:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=e217f2cd00e15d8c7e2b29f02062884a4f6f298b'/>
<id>urn:sha1:e217f2cd00e15d8c7e2b29f02062884a4f6f298b</id>
<content type='text'>
99% of the world calls it.
allow just "bcrypt" without params to mean auto-tune ("bcrypt,a").
default remains 8 rounds (for now)
ok deraadt
</content>
</entry>
<entry>
<title>Set errno to EINVAL, instead of letting ERANGE escape out.</title>
<updated>2015-02-24T19:19:32+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2015-02-24T19:19:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=2183f1732174b17cc3ac80af51756f37e634f81d'/>
<id>urn:sha1:2183f1732174b17cc3ac80af51756f37e634f81d</id>
<content type='text'>
Printing strerror() in that case will say result too large, even if rounds is
actually too small. invalid is less specific, but less incorrect.
ok millert
</content>
</entry>
<entry>
<title>remove unused variable</title>
<updated>2015-01-15T17:32:43+00:00</updated>
<author>
<name>chl</name>
<email></email>
</author>
<published>2015-01-15T17:32:43+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=6a7633f6a9b43d30a021cd47721a203fab779bde'/>
<id>urn:sha1:6a7633f6a9b43d30a021cd47721a203fab779bde</id>
<content type='text'>
ok tedu@
</content>
</entry>
<entry>
<title>copy bcrypt autotune from encrypt(1) and expose via crypt_newhash</title>
<updated>2014-12-30T10:27:24+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2014-12-30T10:27:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=1d2efc1853353eaa45dfbe2d8bb0849c64d26884'/>
<id>urn:sha1:1d2efc1853353eaa45dfbe2d8bb0849c64d26884</id>
<content type='text'>
ok deraadt miod
</content>
</entry>
<entry>
<title>simplify crypt_checkpass. The API promise is that this function doesn't</title>
<updated>2014-12-24T22:10:34+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2014-12-24T22:10:34+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=2624c48e3a661801d934630f50049092517e4ebf'/>
<id>urn:sha1:2624c48e3a661801d934630f50049092517e4ebf</id>
<content type='text'>
use global data. The simplest fix is to only check blowfish passwords,
and implicitly lock out DES passwords.
crypt_checkpass is currently only used in one place, passwd, to verify
the local user's password, so this is probably acceptable.
Gives people a little more time to migrate away from DES before introduing
checkpass into more places.
</content>
</entry>
<entry>
<title>check crypt() for null. noticed by Jonas Termansen</title>
<updated>2014-11-24T21:36:35+00:00</updated>
<author>
<name>tedu</name>
<email></email>
</author>
<published>2014-11-24T21:36:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=64242a3cc6a21fd7a5029ca38a09c1794232ee2e'/>
<id>urn:sha1:64242a3cc6a21fd7a5029ca38a09c1794232ee2e</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Let crypt_checkpass() set EACCES after bcrypt_checkpass() failure;</title>
<updated>2014-11-21T12:32:38+00:00</updated>
<author>
<name>schwarze</name>
<email></email>
</author>
<published>2014-11-21T12:32:38+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=891ef0a4b17000b796f7fa279607b8d1d5e6e667'/>
<id>urn:sha1:891ef0a4b17000b796f7fa279607b8d1d5e6e667</id>
<content type='text'>
ok tedu@
</content>
</entry>
</feed>
