<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/regress/lib/libssl/interop/Makefile.inc, branch OPENBSD_7_5_BASE</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=OPENBSD_7_5_BASE</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=OPENBSD_7_5_BASE'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2024-02-03T15:58:34+00:00</updated>
<entry>
<title>Remove GOST and STREEBOG support from libssl.</title>
<updated>2024-02-03T15:58:34+00:00</updated>
<author>
<name>beck</name>
<email></email>
</author>
<published>2024-02-03T15:58:34+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=20afa90e552d2efed2187dbafc92170a3895e921'/>
<id>urn:sha1:20afa90e552d2efed2187dbafc92170a3895e921</id>
<content type='text'>
This version of GOST is old and not anywhere close to compliant with
modern GOST standards. It is also very intrusive in libssl and
makes a mess everywhere.  Efforts to entice a suitably minded anyone
to care about it have been unsuccessful.

At this point it is probably best to remove this, and if someone
ever showed up who truly needed a working version, it should be
a clean implementation from scratch, and have it use something
closer to the typical API in libcrypto so it would integrate less
painfully here.

This removes it from libssl in preparation for it's removal from
libcrypto with a future major bump

ok tb@
</content>
</entry>
<entry>
<title>Make libssl interop server/client tests less flaky by ensuring the</title>
<updated>2023-10-18T19:14:32+00:00</updated>
<author>
<name>anton</name>
<email></email>
</author>
<published>2023-10-18T19:14:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=70d2dccbde7b7bc2c4e52bcee7dcbe39b1a958cd'/>
<id>urn:sha1:70d2dccbde7b7bc2c4e52bcee7dcbe39b1a958cd</id>
<content type='text'>
server has terminated before examining the outcome.
</content>
</entry>
<entry>
<title>Remove echo headlines.</title>
<updated>2020-12-17T00:51:12+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2020-12-17T00:51:12+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=c7cbfcf2a0ad5dc204129e5fbf99dd57cc33e72a'/>
<id>urn:sha1:c7cbfcf2a0ad5dc204129e5fbf99dd57cc33e72a</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Test botan TLS client with libressl, openssl, openssl11 server.</title>
<updated>2020-09-15T01:45:16+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2020-09-15T01:45:16+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=99c305e9a1574d8ffff5ba4752c88b964c0fafbd'/>
<id>urn:sha1:99c305e9a1574d8ffff5ba4752c88b964c0fafbd</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Test that all supported TLS ciphers actually work.  Establish</title>
<updated>2019-02-21T23:06:33+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2019-02-21T23:06:33+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=375349e3dab4ad23aaba1771a89b29b9525e2c0c'/>
<id>urn:sha1:375349e3dab4ad23aaba1771a89b29b9525e2c0c</id>
<content type='text'>
connections between client and server implemented with LibreSSL or
OpenSSL with a fixed cipher on each side.  Check the used cipher
in the session print out.
</content>
</entry>
<entry>
<title>Reorganize libssl interop tests.  Move netcat tests into separate</title>
<updated>2018-11-11T00:15:04+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2018-11-11T00:15:04+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=50da4d90eb521ba89a43af23da2b26ada631c4d1'/>
<id>urn:sha1:50da4d90eb521ba89a43af23da2b26ada631c4d1</id>
<content type='text'>
directory.  Keep all log files for easier debugging.  Name regress
target names consistently.
</content>
</entry>
<entry>
<title>The cert subdir is testing all combinations of certificate validation.</title>
<updated>2018-11-09T06:30:41+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2018-11-09T06:30:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=e3076365506f38e78df5fe822fa92f5279cc68ca'/>
<id>urn:sha1:e3076365506f38e78df5fe822fa92f5279cc68ca</id>
<content type='text'>
Having the three libraries, client and server certificates, missing
or invalid CA or certificates, and enforcing peer certificate results
in 1944 new test cases.
</content>
</entry>
<entry>
<title>Add a self test for each SSL library by connecting client with</title>
<updated>2018-11-07T20:46:28+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2018-11-07T20:46:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=66e6452e3c0d468ff4c14e29943eaf35f06862fe'/>
<id>urn:sha1:66e6452e3c0d468ff4c14e29943eaf35f06862fe</id>
<content type='text'>
server.  Check that the highest available TLS version is selected.
LibreSSL TLS 1.3 check is disabled until the feature becomes
available.
</content>
</entry>
<entry>
<title>Print SSLeay, OpenSSL, and LibreSSL version strings.  Make client</title>
<updated>2018-11-07T06:29:26+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2018-11-07T06:29:26+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=82e426606d31d6e2709a9ffcc5b7635d463a7c49'/>
<id>urn:sha1:82e426606d31d6e2709a9ffcc5b7635d463a7c49</id>
<content type='text'>
and server compile with OpenSSL 1.1.  Check runtime version string
of SSL library.
</content>
</entry>
<entry>
<title>Test TLS interoperability between LibreSSL and OpenSSL.</title>
<updated>2018-11-07T01:08:49+00:00</updated>
<author>
<name>bluhm</name>
<email></email>
</author>
<published>2018-11-07T01:08:49+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=be03b61c1b8f59ccdd34dbe5f6c6b30de697d28b'/>
<id>urn:sha1:be03b61c1b8f59ccdd34dbe5f6c6b30de697d28b</id>
<content type='text'>
Implement simple SSL client and server in C.  Create four binaries
by linking them with LibreSSL or OpenSSL.  This way API compatibility
is tested.  Connect and accept with netcat to test protocol
compatibility with libtls.

Currently OpenSSL 1.0.2p from ports is used.  Plan is to move to
OpenSSL 1.1 and and test TLS 1.3.

idea from beck@; help from jsing@
</content>
</entry>
</feed>
