<feed xmlns='http://www.w3.org/2005/Atom'>
<title>openbsd/src/regress, branch master</title>
<subtitle>A mirror of https://github.com/libressl/openbsd.git
</subtitle>
<id>https://git.lua4.win/openbsd/atom?h=master</id>
<link rel='self' href='https://git.lua4.win/openbsd/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/'/>
<updated>2026-04-21T20:55:21+00:00</updated>
<entry>
<title>wycheproof: skip BLS test vectors to prepare for update</title>
<updated>2026-04-21T20:55:21+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2026-04-21T20:55:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=663fcbae236d58cdbdb79f281892e6bbaaeae55d'/>
<id>urn:sha1:663fcbae236d58cdbdb79f281892e6bbaaeae55d</id>
<content type='text'>
</content>
</entry>
<entry>
<title>pkcs7test: factor main into a helper so we can add some unit tests easily</title>
<updated>2026-04-21T05:18:35+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2026-04-21T05:18:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=e49896f3e98ab36fd145e494a248c83a5a46a84b'/>
<id>urn:sha1:e49896f3e98ab36fd145e494a248c83a5a46a84b</id>
<content type='text'>
</content>
</entry>
<entry>
<title>keypairtest: zero out tls_error before running tests</title>
<updated>2026-04-15T20:13:07+00:00</updated>
<author>
<name>tb</name>
<email></email>
</author>
<published>2026-04-15T20:13:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=814cf761c3d6111996b311e8fe62455469ae8a3c'/>
<id>urn:sha1:814cf761c3d6111996b311e8fe62455469ae8a3c</id>
<content type='text'>
Otherwise tls_error_clear() (called e.g. via tls_error_vset()) will
free the bad error-&gt;msg pointer.

From Michael Forney
</content>
</entry>
<entry>
<title>Prior to this we substring matched and allowed a leading .</title>
<updated>2026-04-13T17:04:23+00:00</updated>
<author>
<name>beck</name>
<email></email>
</author>
<published>2026-04-13T17:04:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=cf3eec32e7a6acbaecd14871fb75ad34fb76c3e7'/>
<id>urn:sha1:cf3eec32e7a6acbaecd14871fb75ad34fb76c3e7</id>
<content type='text'>
on a SAN DNSname constraint. This is not correct, as with
a DNSname constraint, it may exacly match or match zero or
more additional components on the front of the candidte to
match.

Spotted by Haruto Kimura &lt;hkimura2026@gmail.com&gt;

ok tb@ kenjiro@
</content>
</entry>
<entry>
<title>Fix min vs max in failure output.</title>
<updated>2026-04-03T07:40:14+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-04-03T07:40:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=d8c990b8ab23e4f390c5f883d8da8177ef804444'/>
<id>urn:sha1:d8c990b8ab23e4f390c5f883d8da8177ef804444</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Use DTLS_client_method() instead of DTLSv1_client_method().</title>
<updated>2026-04-03T07:37:52+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-04-03T07:37:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=4e96afcd8aab7bbc0e9ad7f32a9c2dd0dc055a61'/>
<id>urn:sha1:4e96afcd8aab7bbc0e9ad7f32a9c2dd0dc055a61</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Adjust depth check to match change in verifier.</title>
<updated>2026-04-01T14:39:11+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-04-01T14:39:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=89eb797db1e499a83313d47457a8fa9fe9272e8c'/>
<id>urn:sha1:89eb797db1e499a83313d47457a8fa9fe9272e8c</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add additional X.509 verifier test cases.</title>
<updated>2026-03-31T13:39:48+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-03-31T13:39:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=848a8ff0f8b9bd889cd059b6040b85d5cd2cc980'/>
<id>urn:sha1:848a8ff0f8b9bd889cd059b6040b85d5cd2cc980</id>
<content type='text'>
The second case (14b) currently triggers a bug in the new verifier.
</content>
</entry>
<entry>
<title>Run new test certificate bundles through Go's verifier.</title>
<updated>2026-03-31T13:37:45+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-03-31T13:37:45+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=e2ae938d435d7b2dd9dbd93f4ee01af27ccd864d'/>
<id>urn:sha1:e2ae938d435d7b2dd9dbd93f4ee01af27ccd864d</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Add additional certificate test bundles.</title>
<updated>2026-03-31T13:37:11+00:00</updated>
<author>
<name>jsing</name>
<email></email>
</author>
<published>2026-03-31T13:37:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.lua4.win/openbsd/commit/?id=5dfea9a73c261844c01f9d5cb3f0972a24e2ba98'/>
<id>urn:sha1:5dfea9a73c261844c01f9d5cb3f0972a24e2ba98</id>
<content type='text'>
</content>
</entry>
</feed>
