<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/regress/lib/libssl, branch libressl-v2.2.1</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=libressl-v2.2.1</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=libressl-v2.2.1'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2015-07-01T07:21:10+00:00</updated>
<entry>
<title>specify the array initializer value</title>
<updated>2015-07-01T07:21:10+00:00</updated>
<author>
<name>bcook</name>
<email></email>
</author>
<published>2015-07-01T07:21:10+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=e47b67744082b755a39d814873574be333764132'/>
<id>urn:sha1:e47b67744082b755a39d814873574be333764132</id>
<content type='text'>
noted by kinichiro from github
</content>
</entry>
<entry>
<title>Convert ssl_bytes_to_cipher_list to CBS.</title>
<updated>2015-06-28T00:08:27+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-28T00:08:27+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=1618490a96ac0f443d379bc3d4dcf04769edd0ce'/>
<id>urn:sha1:1618490a96ac0f443d379bc3d4dcf04769edd0ce</id>
<content type='text'>
Link in the new 'unit' regress and expand the invalid tests to include
some that would fail before the CBS conversion.

input + ok miod@ jsing@
</content>
</entry>
<entry>
<title>Add unit tests for LibreSSL.</title>
<updated>2015-06-27T23:35:52+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-27T23:35:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=a37b07aa0776c4c4f84a698161d022b845148dde'/>
<id>urn:sha1:a37b07aa0776c4c4f84a698161d022b845148dde</id>
<content type='text'>
cipher_list.c is based on code from jsing@.

Discussed with jsing@
</content>
</entry>
<entry>
<title>Change CBS_dup() to also sync the offset.</title>
<updated>2015-06-23T05:58:28+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-23T05:58:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=9a31903e554f01ace552d6ed0a48e3af5e464664'/>
<id>urn:sha1:9a31903e554f01ace552d6ed0a48e3af5e464664</id>
<content type='text'>
Previously, CBS_dup() had its own offset.  However, it is more consistent
to copy everything.

ok miod@ jsing@
</content>
</entry>
<entry>
<title>Convert bytestringtest to individual checks and don't short circuit.</title>
<updated>2015-06-23T01:20:24+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-23T01:20:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=84ef3d24fb4f24599400c3ca9569f6d0ba74b2bf'/>
<id>urn:sha1:84ef3d24fb4f24599400c3ca9569f6d0ba74b2bf</id>
<content type='text'>
The statements were chained together with OR which makes it more annoying
to debug.  Also, it was short circuiting all tests as soon as one function
failed.  Since the functions are independent, they should each run until
error.

Discussed with miod@ and jsing@
</content>
</entry>
<entry>
<title>Remove unnecessary regress target.</title>
<updated>2015-06-23T00:02:01+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-23T00:02:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=76830927a2141b0895f5f91362d3e8480143efb2'/>
<id>urn:sha1:76830927a2141b0895f5f91362d3e8480143efb2</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add tests for CBS_offset() and CBS_write_bytes().</title>
<updated>2015-06-17T07:15:52+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-17T07:15:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=2e34e7894def0bc4b48f5c6a0e01d829aed13fa4'/>
<id>urn:sha1:2e34e7894def0bc4b48f5c6a0e01d829aed13fa4</id>
<content type='text'>
"no problem" miod@, tweak + ok jsing@
</content>
</entry>
<entry>
<title>Be more strict about BER and DER terminology.</title>
<updated>2015-06-16T06:37:58+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-06-16T06:37:58+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=b87417588144066bdf43f4c7eaed221f27269c8f'/>
<id>urn:sha1:b87417588144066bdf43f4c7eaed221f27269c8f</id>
<content type='text'>
bs_ber.c does not convert BER to DER.  It's a hack to convert a DER-like
encoding with one violation (indefinite form) to strict DER.  Rename
the functions to reflect this.

ok miod@ jsing@
</content>
</entry>
<entry>
<title>Check for invalid leading zeros in CBS_get_asn1_uint64.</title>
<updated>2015-04-25T15:28:47+00:00</updated>
<author>
<name>doug</name>
<email></email>
</author>
<published>2015-04-25T15:28:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=14b4339c31e6165fb11bbb889e4b24b201ac5e29'/>
<id>urn:sha1:14b4339c31e6165fb11bbb889e4b24b201ac5e29</id>
<content type='text'>
ASN.1 integers cannot have all zeros or all ones for the first 9 bits.
This rule ensures the numbers are encoded with the smallest number of
content octets (see ITU-T Rec X.690 section 8.3.2).

Based on BoringSSL commit 5933723b7b592e9914f703d630b596e140c93e16

ok deraadt@ jsing@
</content>
</entry>
<entry>
<title>Reject DH keys sent by a server if they are considered too small; inspired</title>
<updated>2015-03-08T16:48:47+00:00</updated>
<author>
<name>miod</name>
<email></email>
</author>
<published>2015-03-08T16:48:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=973703db67a8e73d70e63afa8f2cde19da09144d'/>
<id>urn:sha1:973703db67a8e73d70e63afa8f2cde19da09144d</id>
<content type='text'>
by a similar BoringSSL change, but raising the limit to 1024 bits.
ok jsing@ markus@ guenther@ deraadt@
</content>
</entry>
</feed>
