Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Bring back these two files to the 3.1 branch, after the latest libssl updateOPENBSD_3_1 | miod | 2003-05-25 | 2 | -0/+34 |
| | | | | | destroyed them by mistake. Sorry for the inconvenience, 3.1-STABLE should build again now. | ||||
* | Errata #025 (markus): | miod | 2003-03-19 | 1 | -14/+12 |
| | | | | Fix for Klima-Pokorny-Rosa attack on RSA in SSL/TLS | ||||
* | Errata #024 (markus): | miod | 2003-03-19 | 2 | -5/+31 |
| | | | | Enforce blinding on RSA operations involving private keys. | ||||
* | MFC (markus@): | miod | 2003-02-23 | 1 | -0/+6 |
| | | | | check for size < 0 when allocating memory, from openssl (-r1.34) | ||||
* | Errata 021: | miod | 2003-02-22 | 3 | -11/+48 |
| | | | | | | | | | | | | security fix from openssl 0.9.7a: In ssl3_get_record (ssl/s3_pkt.c), minimize information leaked via timing by performing a MAC computation even if incorrrect block cipher padding has been found. This is a countermeasure against active attacks where the attacker has to distinguish between bad padding and a MAC verification error. (CAN-2003-0078) adapted from a patch from Ryan W. Maple, via markus@ | ||||
* | Disable the engine stuff | jason | 2002-09-26 | 1 | -1/+2 |
| | |||||
* | Pull in patch from current: | jason | 2002-08-05 | 1 | -4/+5 |
| | | | | Better fixes from openssl cvs; from markus@ | ||||
* | Pull in patch from current: | jason | 2002-07-30 | 16 | -7/+99 |
| | | | | | | Fix (markus), errata 013: apply patches from OpenSSL Security Advisory [30 July 2002], http://marc.theaimsgroup.com/?l=openssl-dev&m=102802395104110&w=2 | ||||
* | This commit was manufactured by cvs2git to create branch 'OPENBSD_3_1'. | cvs2svn | 2002-03-12 | 73 | -23237/+0 |
| | |||||
* | Vax O1 workaround no longer needed. | hugh | 2002-02-23 | 1 | -2/+1 |
| | |||||
* | Remove references to nonexistent man pages. Ok theo, millert. | kjell | 2002-02-12 | 1 | -2/+1 |
| | |||||
* | but... on vax... des_enc.c requires -O1 | deraadt | 2002-02-10 | 1 | -1/+2 |
| | |||||
* | Special case a_strnid.c on vax. | hugh | 2002-01-21 | 1 | -1/+5 |
| | |||||
* | fix to match documented behaviour. RAND_file_name must return a pointer to | beck | 2001-12-20 | 1 | -9/+13 |
| | | | | buf, not something else. | ||||
* | FQDN subjectAltName in certs, used in isakmpd(8) examples. beck@ ok. | ho | 2001-12-11 | 1 | -0/+7 |
| | |||||
* | Missing ssl manpages and mlinks; beck@ ok. | fgsch | 2001-11-06 | 1 | -4/+129 |
| | |||||
* | understand sparc64 | deraadt | 2001-09-18 | 2 | -26/+12 |
| | |||||
* | merge openssl 0.9.6b-engine | beck | 2001-08-01 | 62 | -341/+1030 |
| | | | | | Note that this is a maintenence release, API's appear *not* to have changed. As such, I have only increased the minor number on these libraries | ||||
* | http://www.openssl.org/news/secadv_prng.txt; ok beck@ | markus | 2001-08-01 | 1 | -8/+17 |
| | |||||
* | more MLINK | deraadt | 2001-07-31 | 1 | -3/+13 |
| | |||||
* | Add missing MLINKS for various .3 man pages | krw | 2001-07-31 | 1 | -1/+16 |
| | |||||
* | more Xr completions | deraadt | 2001-07-31 | 1 | -4/+6 |
| | |||||
* | openssl-engine-0.9.6a merge | beck | 2001-06-22 | 250 | -1151/+5441 |
| | |||||
* | typo | deraadt | 2001-06-16 | 1 | -1/+0 |
| | |||||
* | crank crypto lib version, just in case | deraadt | 2001-04-23 | 1 | -1/+1 |
| | |||||
* | crank ssl lib version, just in case | deraadt | 2001-04-23 | 2 | -2/+2 |
| | |||||
* | import DSA changes from 0.9.6a (Bleichenbacher attack), ok provos@/deraadt@ | markus | 2001-04-23 | 3 | -21/+66 |
| | |||||
* | CRT and DH+SSL fix from 0.9.6a, ok provos@/deraadt@ | markus | 2001-04-22 | 3 | -1/+13 |
| | |||||
* | Add an x509v3.cnf in /etc/ssl so that creating certificate authorities | beck | 2001-04-17 | 2 | -2/+23 |
| | | | | | form isakmpd works. From Tim Newsham <newsham@lava.net> ok provos@ | ||||
* | Crank major number. openssl on m68k is now compiled in 32 bit mode instead | deraadt | 2001-03-10 | 3 | -3/+3 |
| | | | | | of 64 bit mode. This makes ssh -2 run about 10x faster, because the 64 bit mul instructions no longer need emulation. | ||||
* | minor irrelevant oops | deraadt | 2001-03-09 | 1 | -2/+2 |
| | |||||
* | add OpenBSD-m68k target, turning BN_LLONG off, for performance on 060 | deraadt | 2001-03-09 | 1 | -0/+1 |
| | |||||
* | build using OpenBSD-m68k on m68k machines | deraadt | 2001-03-09 | 1 | -1/+3 |
| | |||||
* | Add missing line continuation character. Fixes sparc and powerpc builds. | millert | 2001-02-10 | 1 | -2/+2 |
| | |||||
* | simplify if loops a bit; Reviewed by: beck@ | brad | 2001-02-09 | 1 | -23/+14 |
| | |||||
* | if a build generates the files, a clean should remove them. ok beck@ | todd | 2001-02-05 | 1 | -2/+14 |
| | |||||
* | remove old infrastructure which is not used anymore. Ok'd by beck@ | brad | 2001-01-31 | 6 | -294/+20 |
| | |||||
* | Use correct interpreters | niklas | 2001-01-26 | 2 | -3/+3 |
| | |||||
* | put more manual pages in | deraadt | 2001-01-22 | 1 | -2/+46 |
| | |||||
* | make sure s always has enough from for trailing \0. even though strlcpy will | beck | 2001-01-12 | 1 | -1/+1 |
| | | | | truncate, thanks to itojun@ | ||||
* | do not honour environment variables if issetugid, and even more strongly ↵ | deraadt | 2001-01-02 | 2 | -18/+19 |
| | | | | support the random device | ||||
* | fix util script runs to not assume they are executable. | beck | 2000-12-18 | 3 | -3/+3 |
| | |||||
* | Remove - RSA is there now, don't need to talk about it being stubbed. | beck | 2000-12-16 | 1 | -56/+0 |
| | |||||
* | add in forgotten dso stuff. | beck | 2000-12-16 | 1 | -1/+5 |
| | |||||
* | oops, forgot top level makefile.bsd-wrapper on merge | beck | 2000-12-15 | 1 | -3/+7 |
| | |||||
* | Oops, missed makefile change, and must crank major on these, some | beck | 2000-12-15 | 3 | -6/+6 |
| | | | | routines which used to be externally used are now macros. ugh. | ||||
* | openssl-engine0.9.6 merge | beck | 2000-12-15 | 118 | -0/+0 |
| | | | | Again, be sure to whack an old /usr/obj/lib/libssl if you are doing builds | ||||
* | openssl-engine-0.9.6 merge | beck | 2000-12-15 | 661 | -15812/+47521 |
| | |||||
* | Correctly deal with NOMAN being set. Since it may be set in mk.conf | millert | 2000-11-19 | 1 | -6/+6 |
| | | | | we pull in bsd.own.mk before testing for it. | ||||
* | these contain special cases where they build man pages into .0 files; | deraadt | 2000-11-10 | 1 | -18/+69 |
| | | | | they must now also build .ps files if MANPS is set. |