Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Add -addext option to openssl(1) req subcommand | inoguchi | 2019-11-06 | 1 | -3/+133 | |
| | | | | | | First step of adding -addext option to openssl(1) req from OpenSSL 1.1.1d. ok jsing@ | |||||
* | use curly braces for consistency | tb | 2019-11-06 | 1 | -2/+2 | |
| | ||||||
* | Remove trailing space in appstest.sh | inoguchi | 2019-11-05 | 1 | -15/+15 | |
| | ||||||
* | Add test for cms in appstest.sh | inoguchi | 2019-11-05 | 1 | -1/+57 | |
| | ||||||
* | Allow ip addresses as argument to SSL_set1_host() but be careful to not | otto | 2019-11-04 | 1 | -2/+14 | |
| | | | | poison the context. ok and help jsing@ tb@ | |||||
* | Fix an out of bound read/write when using a proxy. | millert | 2019-11-04 | 2 | -11/+21 | |
| | | | | From Lucas AT sexy DOT is. OK job@ kn@ | |||||
* | Indent labels for diffability. | jsing | 2019-11-04 | 1 | -5/+5 | |
| | ||||||
* | Remove spaces between * and variable names. | jsing | 2019-11-04 | 1 | -25/+25 | |
| | ||||||
* | Remove explicit NULL checks before *_free() calls. | jsing | 2019-11-04 | 1 | -21/+14 | |
| | ||||||
* | Hook openssl(1) cms back up. | jsing | 2019-11-04 | 3 | -4/+8 | |
| | ||||||
* | Currently we need to include pem.h before cms.h... | jsing | 2019-11-04 | 1 | -2/+3 | |
| | ||||||
* | Remove engine argument from load_cert() calls. | jsing | 2019-11-04 | 1 | -8/+8 | |
| | | | | This was cleaned up after cms went to the attic. | |||||
* | Bring openssl(1) cms back from the attic. | jsing | 2019-11-04 | 1 | -0/+1142 | |
| | ||||||
* | Add regress for CMS sign and verify. | jsing | 2019-11-04 | 1 | -2/+125 | |
| | ||||||
* | Reshuffle RSA_PSS_PARAMS and RSA_OAEP_PARAMS to avoid duplicate typedef. | jsing | 2019-11-04 | 1 | -21/+19 | |
| | | | | | | Issue spotted by bcook@ ok bcook@ inoguchi@ | |||||
* | Add RSA-PSS test for genpkey in appstest.sh | inoguchi | 2019-11-03 | 1 | -1/+9 | |
| | ||||||
* | Sort standard_methods by pkey_id. | inoguchi | 2019-11-02 | 1 | -4/+4 | |
| | | | | ok jsing@ | |||||
* | CMS didn't make the 6.6 release: adjust the text in the HISTORY sections | schwarze | 2019-11-02 | 23 | -69/+69 | |
| | ||||||
* | Hook cms regress. | jsing | 2019-11-02 | 1 | -1/+2 | |
| | ||||||
* | Include cms.h. | jsing | 2019-11-02 | 1 | -1/+2 | |
| | ||||||
* | Initial regress for cms. | jsing | 2019-11-02 | 2 | -0/+199 | |
| | ||||||
* | .Xr CMS_ContentInfo_new 3 | schwarze | 2019-11-02 | 1 | -2/+3 | |
| | ||||||
* | .Xr BIO_new_CMS 3 | schwarze | 2019-11-02 | 1 | -2/+3 | |
| | ||||||
* | document PEM_read_CMS(3), PEM_read_bio_CMS(3), PEM_write_CMS(3), and | schwarze | 2019-11-02 | 1 | -3/+46 | |
| | | | | PEM_write_bio_CMS(3) which jsing@ just enabled in Symbols.list rev. 1.91 | |||||
* | In Symbols.list rev. 1.91, jsing enabled many CMS functions. | schwarze | 2019-11-02 | 1 | -1/+24 | |
| | | | | Install the new manual pages documenting the majority of them. | |||||
* | Bring back some icky buffer allocation code so that pkey_rsa_print() | jsing | 2019-11-02 | 1 | -9/+41 | |
| | | | | | | works again with the horrific API that is ASN1_bn_print(). Issue spotted by inoguchi@ | |||||
* | Add tls_conn_cipher_strength() to gotls regress. | jsing | 2019-11-02 | 2 | -2/+20 | |
| | ||||||
* | Bump libcrypto, libssl and libtls minors due to symbol additions. | jsing | 2019-11-02 | 3 | -3/+3 | |
| | ||||||
* | Provide RSA_PKCS1_OpenSSL(). | jsing | 2019-11-02 | 3 | -3/+10 | |
| | | | | Prompted by inoguchi@ | |||||
* | Make RSA_padding_{add,check}_PKCS1_OAEP_mgf1() public. | jsing | 2019-11-02 | 3 | -9/+10 | |
| | ||||||
* | Make RSA_OAEP_PARAMs public. | jsing | 2019-11-02 | 3 | -17/+22 | |
| | ||||||
* | Document tls_conn_cipher_strength(). | jsing | 2019-11-02 | 1 | -2/+14 | |
| | | | | ok schwarze@ | |||||
* | Enable CMS in LibreSSL. | jsing | 2019-11-02 | 3 | -2/+135 | |
| | | | | ok bcook@ deraadt@ inoguchi@ job@ tb@ | |||||
* | Provide tls_conn_cipher_strength(). | jsing | 2019-11-02 | 4 | -3/+15 | |
| | | | | | | | | | This returns the strength in bits of the symmetric cipher used for the connection. Diff from gilles@ ok tb@ | |||||
* | In evp/pmeth_lib.c rev. 1.16, jsing@ enabled EVP_PKEY_RSA_PSS. | schwarze | 2019-11-01 | 1 | -3/+5 | |
| | | | | Document it. | |||||
* | In rsa.h rev. 1.45, jsing@ provided | schwarze | 2019-11-01 | 1 | -8/+16 | |
| | | | | | | the three macro constants RSA_PSS_SALTLEN_*; document them. The wording is a combination of our existing text and the wording in the OpenSSL 1.1.1 branch, which is still under a free license. | |||||
* | Add DSA CMS support. | jsing | 2019-11-01 | 1 | -1/+25 | |
| | | | | | | From OpenSSL 1.1.1d. ok tb@ | |||||
* | Add RSA CMS support. | jsing | 2019-11-01 | 3 | -5/+262 | |
| | | | | | | From OpenSSL 1.1.1d. ok tb@ | |||||
* | Provide NID for pSpecified. | jsing | 2019-11-01 | 2 | -0/+2 | |
| | | | | ok tb@ | |||||
* | Wire up PKEY methods for RSA-PSS. | jsing | 2019-11-01 | 1 | -2/+6 | |
| | | | | ok tb@ | |||||
* | Wire up ASN.1 methods for RSA-PSS. | jsing | 2019-11-01 | 1 | -1/+5 | |
| | | | | ok tb@ | |||||
* | In rsa.h rev. 1.45, jsing@ provided the three | schwarze | 2019-11-01 | 2 | -6/+64 | |
| | | | | | | macros EVP_PKEY_CTX_set_rsa_pss_keygen_*(3); document them. Text mostly taken from the OpenSSL 1.1.1 branch, which is still under a free license, but rearranged to fit the structure of our manual pages. | |||||
* | move the PSS macros to the end in preparation for adding more macros, | schwarze | 2019-11-01 | 1 | -50/+45 | |
| | | | | | reduce text duplication by forming subsections, and some minor corrections | |||||
* | The EVP_PKEY_CTX_ctrl(3) manual page requires additions for RSA-PSS | schwarze | 2019-11-01 | 4 | -267/+358 | |
| | | | | but it is growing to excessive size, so split out RSA_pkey_ctx_ctrl(3). | |||||
* | Update RSA ASN.1 code to handle RSA-PSS. | jsing | 2019-11-01 | 4 | -302/+389 | |
| | | | | | | From OpenSSL 1.1.1d. ok tb@ | |||||
* | Clean up RSA_new_method(). | jsing | 2019-11-01 | 1 | -40/+24 | |
| | | | | | | | | | | Use calloc() instead of malloc() for initialisation and remove explicit zero initialisation of members. This ensures that new members always get initialised. Also use a single error return path, simplifying code. ok tb@ | |||||
* | Add RSA OAEP test for pkeyutl in appstest.sh | inoguchi | 2019-10-31 | 1 | -1/+21 | |
| | ||||||
* | In rsa_pmeth.c rev. 1.30, jsing@ set the minimum RSA key length | schwarze | 2019-10-31 | 1 | -2/+3 | |
| | | | | for RSA key generation to 512 bits. Document that minimum. | |||||
* | Add CMS controls for RSA. | jsing | 2019-10-31 | 1 | -1/+8 | |
| | ||||||
* | Add support for RSA-PSS. | jsing | 2019-10-31 | 5 | -65/+370 | |
| | | | | | | From OpenSSL 1.1.1d. ok inoguchi@ |