<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/lib/libcrypto/evp/evp.h, branch OPENBSD_6_8_BASE</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=OPENBSD_6_8_BASE</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=OPENBSD_6_8_BASE'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2020-04-27T19:31:02+00:00</updated>
<entry>
<title>Disallow the use of zero length IVs in AES-GCM via</title>
<updated>2020-04-27T19:31:02+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2020-04-27T19:31:02+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=59b4077b60cc24004bc23295bd2ff465be743f11'/>
<id>urn:sha1:59b4077b60cc24004bc23295bd2ff465be743f11</id>
<content type='text'>
EVP_AEAD_CTX_{open,seal}, as this leaks the authentication key.

Issue reported and fix tested by Guido Vranken.

ok beck, jsing

This commit adds a constant to a public header despite library lock,
as discussed with deraadt and sthen.
</content>
</entry>
<entry>
<title>Add EVP_PKEY_RSA_PSS.</title>
<updated>2019-10-24T15:43:09+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2019-10-24T15:43:09+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=113b00e5904b9423da9766f23fb2fd48f1d697e3'/>
<id>urn:sha1:113b00e5904b9423da9766f23fb2fd48f1d697e3</id>
<content type='text'>
ok tb@
</content>
</entry>
<entry>
<title>Provide EVP_PKEY_CTX_get_signature_md() macro and implement the</title>
<updated>2019-09-09T18:06:26+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2019-09-09T18:06:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=18a2a567e136745ffdad4c3346ee0b435f927909'/>
<id>urn:sha1:18a2a567e136745ffdad4c3346ee0b435f927909</id>
<content type='text'>
EVP_PKEY_CTRL_GET_MD control for DSA, EC and RSA.

This is used by the upcoming RSA CMS code.

ok inoguchi@ tb@
</content>
</entry>
<entry>
<title>Provide ASN1_PKEY_CTRL_CMS_RI_TYPE.</title>
<updated>2019-08-11T14:11:28+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2019-08-11T14:11:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=2f0572eb120ac6ac28997b7d74dfde415cee226e'/>
<id>urn:sha1:2f0572eb120ac6ac28997b7d74dfde415cee226e</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Provide EVP_PKEY_get0_hmac(). From OpenSSL 1.1.1 which is still</title>
<updated>2019-03-17T18:17:45+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2019-03-17T18:17:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=d1cff79a11e003c54fb26944575ab3013366508d'/>
<id>urn:sha1:d1cff79a11e003c54fb26944575ab3013366508d</id>
<content type='text'>
freely licensed.

From jsing
</content>
</entry>
<entry>
<title>Provide EVP_aes_{128,192,256}_wrap(). This is a compatible</title>
<updated>2019-03-17T18:07:41+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2019-03-17T18:07:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=9651ec05f00bf3384031fb7428d88d3daf1e1139'/>
<id>urn:sha1:9651ec05f00bf3384031fb7428d88d3daf1e1139</id>
<content type='text'>
implementation based on the one in OpenSSL 1.0.2r which is
still freely licensed.

The functions are undocumented in OpenSSL. To use them, one
needs to set the undocumented EVP_CIPHER_CTX_FLAG_WRAP_ALLOW
flag on the EVP_CIPHER_CTX.

resolves #505

ok jsing
</content>
</entry>
<entry>
<title>Add the SM4 block cipher from the Chinese standard GB/T 32907-2016.</title>
<updated>2019-03-17T17:42:37+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2019-03-17T17:42:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=83706f88f1f845458a32eb6c86da86d667e28f1b'/>
<id>urn:sha1:83706f88f1f845458a32eb6c86da86d667e28f1b</id>
<content type='text'>
This is an ISC licensed version based on the sources by Ribose Inc
that were ported to OpenSSL in 2017.

Patch from Daniel Wyatt with minor tweaks.
ok inoguchi, jsing
</content>
</entry>
<entry>
<title>add support for xchacha20 and xchacha20-poly1305</title>
<updated>2019-01-22T00:59:21+00:00</updated>
<author>
<name>dlg</name>
<email></email>
</author>
<published>2019-01-22T00:59:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4dfb993f9f695f40d03730129e2c082223711b65'/>
<id>urn:sha1:4dfb993f9f695f40d03730129e2c082223711b65</id>
<content type='text'>
xchacha is a chacha stream that allows for an extended nonce, which
in turn makes it feasible to use random nonces.

ok tb@
</content>
</entry>
<entry>
<title>provide EVP_ENCODE_CTX_{new,free}().</title>
<updated>2019-01-19T01:24:18+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2019-01-19T01:24:18+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=8f423e1fc981cab57cbb760dd6cab4253792b86b'/>
<id>urn:sha1:8f423e1fc981cab57cbb760dd6cab4253792b86b</id>
<content type='text'>
ok jsing
</content>
</entry>
<entry>
<title>Add Ribose Inc's implementation of the SM3 hashing function with</title>
<updated>2018-11-11T06:53:31+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2018-11-11T06:53:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=c247a32a9d35da8568530b68935cbf846e741929'/>
<id>urn:sha1:c247a32a9d35da8568530b68935cbf846e741929</id>
<content type='text'>
tweaks from jsing and myself.  The SM2/SM3/SM4 algorithms are mandatory
for legal use of cryptography within China and [are] widely applied in
the country, covering identification/financial cards, contactless,
TPM 2.0 and PKI.

ok beck inoguchi jsing
</content>
</entry>
</feed>
