Commit message (Collapse) | Author | Files | Lines | ||
---|---|---|---|---|---|
2015-09-30 | Place all of the ASN1 M_ macros under #ifndef LIBRESSL_INTERNAL. | jsing | 2 | -60/+74 | |
2015-09-30 | Expand M_i2d_ASN1_OCTET_STRING macros - no change in generated assembly, | jsing | 2 | -6/+10 | |
aside from line numbers. | |||||
2015-09-30 | s/M_ASN1_ENUMERATED_free/ASN1_ENUMERATED_free/ | jsing | 2 | -4/+4 | |
2015-09-30 | Replace M_ASN1_ENUMERATED_(free|new) with ASN1_ENUMERATED_(free|new). | jsing | 2 | -6/+6 | |
2015-09-30 | Replace M_ASN1_OCTET_STRING_(free|new) with ASN1_OCTET_STRING_(free|new). | jsing | 30 | -98/+98 | |
2015-09-30 | Replace M_ASN1_UTCTIME_(new|free) with ASN1_UTCTIME_(new|free). | jsing | 2 | -6/+6 | |
2015-09-30 | Replace M_ASN1_IA5STRING_(new|free) with ASN1_IA5STRING_(new|free). Same | jsing | 6 | -18/+18 | |
with one s/M_ASN1_VISIBLESTRING_new/ASN1_VISIBLESTRING_new/. | |||||
2015-09-30 | Replace M_ASN1_GENERALIZEDTIME_(new|free) with | jsing | 6 | -14/+14 | |
ASN1_GENERALIZEDTIME_(new|free). | |||||
2015-09-30 | s/M_ASN1_TIME_free/ASN1_TIME_free/ | jsing | 4 | -14/+14 | |
2015-09-30 | Replace M_ASN1_INTEGER_(new|free) with ASN1_INTEGER_(new|free) - this is | jsing | 24 | -82/+82 | |
different from the macro expansion, but the result is the same. Also replace some ASN1_STRING_dup() with ASN1_INTEGER_dup(). ok beck@ doug@ | |||||
2015-09-30 | Remove unnecessary type assignments - M_ASN1_INTEGER_new() already sets | jsing | 2 | -6/+2 | |
the type to V_ASN1_INTEGER. ok doug@ | |||||
2015-09-30 | fix two typos. | sobrado | 1 | -2/+2 | |
2015-09-30 | Fix a bug in the regress, and be much more pedantic about what is allowed | beck | 1 | -22/+46 | |
per RFC 5380 in an X509. RFC 5280 states that all times before 2050 must be specified as a UTCtime, not a Generalized time, and all times after must be a UTC time. By extension this also means the smallest time allowed per RFC 5280 is 500101000000Z and the largest is 99991231235959Z.. | |||||
2015-09-30 | Remove support for NO_ASN1_TYPEDEFS. | doug | 2 | -42/+2 | |
This ifdef was introduced 15 years ago and was known to cause problems with STACK_OF() back then. ok jsing@, beck@, jca@ | |||||
2015-09-29 | convert "last_time" to a time_t, to handle beyond Y2038 | deraadt | 2 | -14/+14 | |
ok guenther miod | |||||
2015-09-29 | Replace remaining M_ASN1_BIT_STRING_(new|free) macros with calls to | jsing | 6 | -18/+18 | |
ASN1_BIT_STRING_(new|free). ok beck@ doug@ | |||||
2015-09-29 | Instead of declaring a union in multiple places, move it to tls_internal.h. | jsing | 3 | -15/+14 | |
ok deraadt@ | |||||
2015-09-29 | clean some ugly intendation warts | deraadt | 5 | -12/+21 | |
2015-09-29 | Add an rfc5280 test suite to test x509_cmp_time. | beck | 2 | -2/+362 | |
Note some of these will yet fail with the current libcrypto as the current X509_cmp_time is not RFC5280 compliant ok jsing@ | |||||
2015-09-29 | Fix sha2 regression test for libcrypto. | doug | 1 | -2/+2 | |
By default, "openssl sha" used SHA-0. However, it was possible to use the form "openssl sha -sha256" to run SHA-256 instead. The regression test used this form. Since we removed SHA-0 support, the regress tests should now call "openssl <digest>". ok guenther@, bcook@ | |||||
2015-09-28 | remove excessive brackets on pointer math | deraadt | 2 | -16/+16 | |
2015-09-28 | Explicit NULL checks and style(9) tweaks. | jsing | 1 | -7/+7 | |
2015-09-27 | Redo 1.25, without the NULL deref. | miod | 2 | -44/+62 | |
ok sthen@ bcook@ | |||||
2015-09-27 | check if openssl(1) actually works before proceeding | bcook | 1 | -0/+2 | |
It was possible for this test to pass even if the openssl command itself was missing. | |||||
2015-09-27 | bump to 2.3.1 | bcook | 2 | -6/+6 | |
2015-09-26 | Use ASN1_item_dup() instead of ASN1_dup(). | jsing | 4 | -14/+10 | |
ok bcook@ | |||||
2015-09-26 | lint is dead: delete useless LINTLIBRARY comments | guenther | 2 | -4/+2 | |
ok millert@ | |||||
2015-09-26 | We don't need no stinking "EXAMPLE OF THE DSA" or README (the credits are | jsing | 4 | -252/+0 | |
already in the code). ok beck@ miod@ | |||||
2015-09-25 | Add DER encoding/decoding coverage for ASN.1 GENERALIZEDTIME and UTCTIME. | jsing | 1 | -39/+158 | |
2015-09-25 | Add initial regress tests for ASN.1 times. | jsing | 3 | -1/+372 | |
2015-09-25 | avoid trailing .Ns, reduce .Xo and .Sm, drop redundant .Bk | schwarze | 1 | -12/+4 | |
2015-09-22 | typos in documentation; better wording, suggested by jmc@libressl-v2.3.0 | sobrado | 51 | -88/+88 | |
ok jmc@ | |||||
2015-09-21 | add a missing NULL check | bcook | 1 | -1/+5 | |
noted by Bill Parker (dogbert2) on github | |||||
2015-09-21 | add a couple of missing NULL checks | bcook | 1 | -3/+3 | |
noted by Bill Parker (dogbert2) on github | |||||
2015-09-21 | remove vestigial bits of sha-0 and md2 from openssl(1) | bcook | 5 | -23/+17 | |
Noted by kinichiro on github. We probably need a better way to indicate the list of message digests that are allowed, as the current ones are nowhere near exhaustive (sigh - guenther@) OK guenther@ jmc@ | |||||
2015-09-20 | Pack the algorithm numbers, to avoid printing a useless (null) 0 0 0 0 | miod | 1 | -34/+34 | |
line in the summary. | |||||
2015-09-19 | Don't wrap initialized variables: binutils appears to be mishandling them | guenther | 1 | -1/+3 | |
on arm and m88k problems with optind observed by jsg@ | |||||
2015-09-18 | avoid void * pointer arithmetic | bcook | 2 | -4/+4 | |
ok miod@ | |||||
2015-09-18 | Revert bn_print.c:r1.25 ("handle negative-zero in BN_bn2dec() too") for | sthen | 2 | -62/+44 | |
now, it has a NULL deref. Segfault reported by Mikolaj Kucharski, ok bcook | |||||
2015-09-17 | Remove more EVP_sha() SHA-0 references. | bcook | 3 | -6/+5 | |
2015-09-17 | Re-add missing comma from SHA-0 removal which breaks mlinks generation. | sthen | 2 | -2/+2 | |
Worked out by bcook@ | |||||
2015-09-17 | include stdint.h for uint64_t | bcook | 2 | -2/+4 | |
noted by Bernard Spil | |||||
2015-09-16 | Zap RANDFILE. | lteo | 2 | -5/+3 | |
2015-09-14 | tweak previous; | jmc | 1 | -2/+2 | |
2015-09-14 | Provide tls_config_insecure_noverifytime() in order to be able to disable | jsing | 6 | -6/+29 | |
certificate validity checking. ok beck@ | |||||
2015-09-14 | Add support for disabling certificate and CRL validity checking. | jsing | 4 | -22/+30 | |
Loosely based on changes in OpenSSL. ok beck@ | |||||
2015-09-14 | delete bogus trailing .Ns from SYNOPSIS .Ft macros | schwarze | 2 | -12/+12 | |
2015-09-14 | fix formatting by adding the required quotes to .Fa in the SYNOPSIS | schwarze | 4 | -22/+22 | |
2015-09-14 | Remove useless quoting from .Fo and .Fn function names, to prevent | schwarze | 3 | -10/+10 | |
development of a cargo cult in case people look at existing files for examples. This achieves a consistent .Fo and .Fn quoting style across the whole tree. | |||||
2015-09-14 | some conn_version and conn_cipher bits; | jmc | 2 | -9/+10 | |