summaryrefslogtreecommitdiff
path: root/src/lib/libssl (follow)
Commit message (Collapse)AuthorAgeFilesLines
* Bring back these two files to the 3.1 branch, after the latest libssl updateOPENBSD_3_1miod2003-05-252-0/+34
| | | | | destroyed them by mistake. Sorry for the inconvenience, 3.1-STABLE should build again now.
* Errata #025 (markus):miod2003-03-191-14/+12
| | | | Fix for Klima-Pokorny-Rosa attack on RSA in SSL/TLS
* Errata #024 (markus):miod2003-03-192-5/+31
| | | | Enforce blinding on RSA operations involving private keys.
* MFC (markus@):miod2003-02-231-0/+6
| | | | check for size < 0 when allocating memory, from openssl (-r1.34)
* Errata 021:miod2003-02-223-11/+48
| | | | | | | | | | | | security fix from openssl 0.9.7a: In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078) adapted from a patch from Ryan W. Maple, via markus@
* Disable the engine stuffjason2002-09-261-1/+2
|
* Pull in patch from current:jason2002-08-051-4/+5
| | | | Better fixes from openssl cvs; from markus@
* Pull in patch from current:jason2002-07-3016-7/+99
| | | | | | Fix (markus), errata 013: apply patches from OpenSSL Security Advisory [30 July 2002], http://marc.theaimsgroup.com/?l=openssl-dev&m=102802395104110&w=2
* This commit was manufactured by cvs2git to create branch 'OPENBSD_3_1'.cvs2svn2002-03-1273-23237/+0
|
* Vax O1 workaround no longer needed.hugh2002-02-231-2/+1
|
* Remove references to nonexistent man pages. Ok theo, millert.kjell2002-02-121-2/+1
|
* but... on vax... des_enc.c requires -O1deraadt2002-02-101-1/+2
|
* Special case a_strnid.c on vax.hugh2002-01-211-1/+5
|
* fix to match documented behaviour. RAND_file_name must return a pointer tobeck2001-12-201-9/+13
| | | | buf, not something else.
* FQDN subjectAltName in certs, used in isakmpd(8) examples. beck@ ok.ho2001-12-111-0/+7
|
* Missing ssl manpages and mlinks; beck@ ok.fgsch2001-11-061-4/+129
|
* understand sparc64deraadt2001-09-182-26/+12
|
* merge openssl 0.9.6b-enginebeck2001-08-0162-341/+1030
| | | | | Note that this is a maintenence release, API's appear *not* to have changed. As such, I have only increased the minor number on these libraries
* http://www.openssl.org/news/secadv_prng.txt; ok beck@markus2001-08-011-8/+17
|
* more MLINKderaadt2001-07-311-3/+13
|
* Add missing MLINKS for various .3 man pageskrw2001-07-311-1/+16
|
* more Xr completionsderaadt2001-07-311-4/+6
|
* openssl-engine-0.9.6a mergebeck2001-06-22250-1151/+5441
|
* typoderaadt2001-06-161-1/+0
|
* crank crypto lib version, just in casederaadt2001-04-231-1/+1
|
* crank ssl lib version, just in casederaadt2001-04-232-2/+2
|
* import DSA changes from 0.9.6a (Bleichenbacher attack), ok provos@/deraadt@markus2001-04-233-21/+66
|
* CRT and DH+SSL fix from 0.9.6a, ok provos@/deraadt@markus2001-04-223-1/+13
|
* Add an x509v3.cnf in /etc/ssl so that creating certificate authoritiesbeck2001-04-172-2/+23
| | | | | form isakmpd works. From Tim Newsham <newsham@lava.net> ok provos@
* Crank major number. openssl on m68k is now compiled in 32 bit mode insteadderaadt2001-03-103-3/+3
| | | | | of 64 bit mode. This makes ssh -2 run about 10x faster, because the 64 bit mul instructions no longer need emulation.
* minor irrelevant oopsderaadt2001-03-091-2/+2
|
* add OpenBSD-m68k target, turning BN_LLONG off, for performance on 060deraadt2001-03-091-0/+1
|
* build using OpenBSD-m68k on m68k machinesderaadt2001-03-091-1/+3
|
* Add missing line continuation character. Fixes sparc and powerpc builds.millert2001-02-101-2/+2
|
* simplify if loops a bit; Reviewed by: beck@brad2001-02-091-23/+14
|
* if a build generates the files, a clean should remove them. ok beck@todd2001-02-051-2/+14
|
* remove old infrastructure which is not used anymore. Ok'd by beck@brad2001-01-316-294/+20
|
* Use correct interpretersniklas2001-01-262-3/+3
|
* put more manual pages inderaadt2001-01-221-2/+46
|
* make sure s always has enough from for trailing \0. even though strlcpy willbeck2001-01-121-1/+1
| | | | truncate, thanks to itojun@
* do not honour environment variables if issetugid, and even more strongly ↵deraadt2001-01-022-18/+19
| | | | support the random device
* fix util script runs to not assume they are executable.beck2000-12-183-3/+3
|
* Remove - RSA is there now, don't need to talk about it being stubbed.beck2000-12-161-56/+0
|
* add in forgotten dso stuff.beck2000-12-161-1/+5
|
* oops, forgot top level makefile.bsd-wrapper on mergebeck2000-12-151-3/+7
|
* Oops, missed makefile change, and must crank major on these, somebeck2000-12-153-6/+6
| | | | routines which used to be externally used are now macros. ugh.
* openssl-engine0.9.6 mergebeck2000-12-15118-0/+0
| | | | Again, be sure to whack an old /usr/obj/lib/libssl if you are doing builds
* openssl-engine-0.9.6 mergebeck2000-12-15661-15812/+47521
|
* Correctly deal with NOMAN being set. Since it may be set in mk.confmillert2000-11-191-6/+6
| | | | we pull in bsd.own.mk before testing for it.
* these contain special cases where they build man pages into .0 files;deraadt2000-11-101-18/+69
| | | | they must now also build .ps files if MANPS is set.