Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Allow compiling with -DHAS_DAG to enable the policy check with a DAG. | tb | 2023-04-26 | 1 | -1/+4 |
| | | | | ok beck | ||||
* | Turn C++ comments into C comments and minor KNF fixups | tb | 2023-04-26 | 1 | -170/+264 |
| | |||||
* | Clean up X509 memory before exit | job | 2023-04-26 | 1 | -1/+4 |
| | |||||
* | KNF according to knfmt(1) | tb | 2023-04-26 | 1 | -515/+600 |
| | |||||
* | Zap trailing whitespace | tb | 2023-04-26 | 1 | -3/+1 |
| | |||||
* | Add RCS tag | tb | 2023-04-26 | 1 | -0/+1 |
| | |||||
* | Take X509_POLICY_NODE_print() behind the barn | tb | 2023-04-26 | 4 | -100/+3 |
| | | | | | | | | This used to be public API but is now only used for debug code that has certainly never been used since it was released to the public. It drags that debug nonsense with it. ok beck | ||||
* | Add the new policy code to the build. | beck | 2023-04-26 | 1 | -1/+2 |
| | | | | ok tb@ jsing@ | ||||
* | Make the new policy code in x509_policy.c to be selectable at compile time. | beck | 2023-04-26 | 12 | -15/+106 |
| | | | | | | | The old policy codes remains the default, with the new policy code selectable by defining LIBRESSL_HAS_POLICY_DAG. ok tb@ jsing@ | ||||
* | Add a shim to mimic the BoringSSL sk_delete_if function. | beck | 2023-04-26 | 1 | -0/+23 |
| | | | | | | | We add this locally as a function to avoid delving into the unholy macro madness of STACK_OF(3). ok tb@ jsing@ | ||||
* | Add lookup name+function pointer table for improved diagnostics | job | 2023-04-26 | 1 | -4/+29 |
| | | | | OK tb@ | ||||
* | Adapt the sk_find calls from BoringSSL's api to ours. | beck | 2023-04-26 | 1 | -6/+5 |
| | | | | ok tb@ jsing@ | ||||
* | Add the STACK_OF declarations we require. | beck | 2023-04-26 | 1 | -2/+46 |
| | | | | ok tb@ jsing@ | ||||
* | Change OPENSSL_malloc|free|memset and friends to the normal versions. | beck | 2023-04-26 | 1 | -6/+6 |
| | | | | ok tb@ jsing@ | ||||
* | Fix error code goop | beck | 2023-04-26 | 1 | -5/+8 |
| | | | | ok tb@ jsing@ | ||||
* | Use the correct headers to compile with libressl | beck | 2023-04-26 | 1 | -5/+4 |
| | |||||
* | Import policy.c from BoringSSL as x509_policy.c | beck | 2023-04-26 | 1 | -0/+790 |
| | | | | | | | | | | | This is an implementation of the X509 policy processing using a DAG instead of a tree to avoid the problem of exponential expansion of the policy tree as specified in RFC 5280 For details see: https://boringssl-review.googlesource.com/c/boringssl/+/55762 ok tb@ jsing@ | ||||
* | Document those BIO_ctrl(3) command constants | schwarze | 2023-04-26 | 5 | -37/+162 |
| | | | | that correspond to more than one macro each. | ||||
* | Remove the now unused bio_pk7.c | tb | 2023-04-26 | 2 | -65/+1 |
| | |||||
* | Move BIO_new_PKCS7() to the the other streaming stuff in pk7_mime.c | tb | 2023-04-26 | 2 | -8/+8 |
| | |||||
* | KNF nit | tb | 2023-04-26 | 1 | -2/+3 |
| | |||||
* | Clean up ec.h a little. | tb | 2023-04-26 | 1 | -186/+31 |
| | | | | | The doxygen comments are either obvious or otherwise unhelpful and generally an eye sore. Go read the manpage if the header isn't enough. | ||||
* | Parameter names are not needed | job | 2023-04-26 | 1 | -4/+4 |
| | |||||
* | Remove unneeded parentheses | job | 2023-04-26 | 1 | -4/+4 |
| | |||||
* | No need to pass around const pointer cpder2 | job | 2023-04-26 | 1 | -18/+16 |
| | | | | Suggested by tb@ | ||||
* | Shrink signature as cpder is only needed as local variable | job | 2023-04-26 | 1 | -14/+15 |
| | | | | Suggested by tb@ | ||||
* | Replace macros with functions | job | 2023-04-26 | 1 | -99/+115 |
| | | | | Requested by tb@ | ||||
* | Some more EC2M cleanup | tb | 2023-04-26 | 2 | -48/+4 |
| | |||||
* | Garbage collect test using the nseq command | tb | 2023-04-26 | 1 | -7/+1 |
| | | | | reminded by anton | ||||
* | Rename dercache regress test to x509_asn1 | job | 2023-04-26 | 2 | -5/+5 |
| | | | | Requested by jsing@ | ||||
* | Remove e_old.c again | tb | 2023-04-26 | 3 | -171/+1 |
| | | | | | | | | | Also remove nonexistent symbols #defined to other symbols that confuse some linkers in -portable. This commit entails no ABI change on OpenBSD. Discussed with jsing | ||||
* | Reinstate e_old.c it is still used by -portable | tb | 2023-04-25 | 2 | -1/+161 |
| | |||||
* | Add regress test for invalidation of DER cache in select X509 setter functions | job | 2023-04-25 | 2 | -2/+200 |
| | |||||
* | Remove documentation of BN_BLINDING_{g,s}et_thread_id | tb | 2023-04-25 | 1 | -17/+2 |
| | |||||
* | e_old can also go | tb | 2023-04-25 | 2 | -161/+1 |
| | |||||
* | Remove the deprecated API from BN | tb | 2023-04-25 | 4 | -174/+5 |
| | |||||
* | GF2m bites the dust. It won't be missed. | tb | 2023-04-25 | 12 | -4655/+11 |
| | |||||
* | ASN1_item_ndef_i2d also goes. discussed with deraadt | tb | 2023-04-25 | 1 | -1/+0 |
| | |||||
* | bio_asn1: adjust for more recent churn | tb | 2023-04-25 | 2 | -2/+6 |
| | |||||
* | Remove commented version of OPENSSL_NO_EC2M | tb | 2023-04-25 | 1 | -1/+0 |
| | |||||
* | Remove duplicate NID definitions | tb | 2023-04-25 | 1 | -11/+1 |
| | |||||
* | LIBRESSL_NEXT_API is no longer needed | tb | 2023-04-25 | 1 | -2/+0 |
| | |||||
* | Remove prototype of EC_GFp_nist_method() | tb | 2023-04-25 | 1 | -8/+1 |
| | |||||
* | Move EC_KEY_{insert,set}_key_method_data() to internal-only | tb | 2023-04-25 | 4 | -22/+15 |
| | |||||
* | Move low level BIO_new_NDEF API to internal-only | tb | 2023-04-25 | 6 | -25/+29 |
| | |||||
* | Remove proxy cert remnants | tb | 2023-04-25 | 4 | -492/+2 |
| | |||||
* | Remove NETSCAPE_CERT_SEQUENCE | tb | 2023-04-25 | 4 | -191/+4 |
| | |||||
* | Move the policy STACK_OF stuff to pcy_int.h as well | tb | 2023-04-25 | 2 | -50/+45 |
| | |||||
* | Remove SXNET | tb | 2023-04-25 | 9 | -638/+7 |
| | | | | Unused and no authorative information was found online in 2016 | ||||
* | Move truncated sha-2 and sha3 out of #ifdef wrappers | tb | 2023-04-25 | 1 | -5/+1 |
| |