Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | | | Insert missing ABORT if EC_GROUP_copy() fails. | tom | 2004-03-21 | 1 | -1/+1 | |
| | | | | | | | | | | | | | | | | ok markus@ | |||||
* | | | | return(00); -> return(0); markus@ ok | aaron | 2004-03-17 | 1 | -2/+2 | |
| | | | | ||||||
* | | | | out-of-bounds read in (unused) kerberos ciphersuites (CAN-2004-0112) | markus | 2004-03-17 | 2 | -0/+32 | |
| | | | | ||||||
* | | | | avoid null-pointer deref (aka CAN-2004-0079) | markus | 2004-03-17 | 2 | -0/+16 | |
| | | | | | | | | | | | | | | | | see http://www.openssl.org/news/secadv_20040317.txt | |||||
* | | | | change amd64's MACHINE_ARCH from x86_64 to amd64. There are many many | deraadt | 2004-02-27 | 2 | -182/+2 | |
| | | | | | | | | | | | | | | | | | | | | | | | | reasons for this, quite a few of them technical, and not all of them in response to Intel's broken ia32e crud. The gcc toolchain stays at x86_64 for now. | |||||
* | | | | Cleanup and shrink ACSS_KEY a bit. Thus crank library minor. | hshoexer | 2004-02-13 | 4 | -20/+25 | |
| | | | | | | | | | | | | | | | | | | | | | | | | Change cipher modes to more generic names and add an additional mode. ok deraadt@ markus@ | |||||
* | | | | simpler ssl manpages, using --name=. | espie | 2004-02-09 | 1 | -117/+33 | |
| | | | | | | | | | | | | | | | | okay markus@ | |||||
* | | | | remove some debug code and cleanup.. | deraadt | 2004-02-04 | 1 | -18/+6 | |
| | | | | ||||||
* | | | | OK, this time the AES soft keys work with ssh and such. I spent over 3 | deraadt | 2004-02-03 | 1 | -16/+63 | |
| | | | | | | | | | | | | | | | | | | | | hours learning that OpenSSL's internal functions for AES extended keys generate screwy byte order swapped data.. | |||||
* | | | | oops, software key gen bug | deraadt | 2004-02-03 | 1 | -35/+10 | |
| | | | | ||||||
* | | | | Switch to using software generated extended keys (because the cpu cannot | deraadt | 2004-02-03 | 1 | -10/+35 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | yet generate 192 & 256 bit keys). Ensure that 192 and 256 are in the nids table. This also accelerates performance for 128 a tiny bit: type 16 bytes 64 bytes 256 bytes 1024 bytes 8192 bytes aes-128-cbc 34921.48k 129617.82k 362059.93k 623649.81k 790397.77k aes-192-cbc 26227.43k 99215.33k 283242.84k 509881.15k 665323.22k aes-256-cbc 26133.22k 97458.06k 265990.84k 457824.69k 579835.09k | |||||
* | | | | config for arm, copied from powerpc/sparc ok markus@ | drahn | 2004-02-03 | 1 | -0/+180 | |
| | | | | ||||||
* | | | | If on an i386, detect existance of the VIA C3 xcrypt-* using sysctl of | deraadt | 2004-02-03 | 1 | -4/+174 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | the machdep.xcrypt node. If they exist, use the xcrypt-cbc instruction to accelerate aes-{128,192,256}-cbc, for more than 100x performance increase. This code has no effect on any cpu... Tested thus far using openssl speed command, and of course, ssh. 778MB/sec AES-128-CBC performance at 8192 byte block size. | |||||
* | | | | cleanup byte order detection per arch a bit; mickey ok | deraadt | 2004-01-29 | 1 | -14/+4 | |
| | | | | ||||||
* | | | | the rest of the libs stuff; from art@ again | mickey | 2004-01-28 | 2 | -0/+360 | |
| | | | | ||||||
* | | | | Use correct cvs id string. | hshoexer | 2004-01-23 | 3 | -3/+3 | |
| | | | | | | | | | | | | | | | | ok deraadt@ | |||||
* | | | | remove junk return at end | deraadt | 2004-01-23 | 1 | -2/+0 | |
| | | | | ||||||
* | | | | enable acss. | hshoexer | 2004-01-23 | 4 | -5/+13 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | ok @deraadt @markus Also bump minor version. ok @deraadt | |||||
* | | | | evp api and manual page for acss | hshoexer | 2004-01-23 | 2 | -0/+151 | |
| | | | | | | | | | | | | | | | | ok deraadt@ markus@ | |||||
* | | | | Add acss to libcrypto. | hshoexer | 2004-01-23 | 3 | -0/+307 | |
| | | | | | | | | | | | | | | | | ok deraadt@ markus@ | |||||
* | | | | Fix printf format string. ok markus@ | otto | 2004-01-14 | 1 | -1/+1 | |
| | | | | ||||||
* | | | | Break up the colon-separated path to -I into two -I args so the tree | millert | 2003-11-19 | 1 | -2/+2 | |
| | | | | | | | | | | | | | | | | can build with perl 5.8.2. Ok markus@ | |||||
* | | | | use bn_asm_vax.S (from netbsd); test + ok by miod | markus | 2003-11-18 | 10 | -15/+533 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | use asm code for i386, except for the CBC code, because it is not clean PIC code. add <machime/asm.h> support to x86unix.pl tested by: nick (on 30386), henning, djm, tedu, jmc and more; no shlib minor crank necessary, only internal symbols changed. | |||||
* | | | | remove obsolete files | markus | 2003-11-13 | 7 | -5326/+0 | |
| | | | | ||||||
* | | | | crank minor for ERR_release_err_state_table | markus | 2003-11-11 | 1 | -1/+1 | |
| | | | | ||||||
* | | | | merge 0.9.7c; minor bugsfixes; | markus | 2003-11-11 | 82 | -264/+700 | |
| | | | | | | | | | | | | | | | | | | | | API addition: ERR_release_err_state_table [make includes before you build libssl/libcrypto] | |||||
* | | | | This commit was generated by cvs2git to track changes on a CVS vendor | markus | 2003-11-11 | 3 | -2/+620 | |
|\| | | | | | | | | | | | branch. | |||||
| * | | | import 0.9.7c | markus | 2003-11-11 | 88 | -266/+1326 | |
| | | | | ||||||
* | | | | don't destroy old pointer if realloc fails; from Daniel Lucq; ok deraadt@ | markus | 2003-10-25 | 1 | -3/+7 | |
| | | | | ||||||
* | | | | Correct some off-by-ones. They currently don't matter, but this | cloder | 2003-10-01 | 2 | -6/+6 | |
| | | | | | | | | | | | | | | | | | | | | is for future safety and consistency. OK krw@, markus@ | |||||
* | | | | more fixes from 0.9.7c, ok deraadt, cloder | markus | 2003-09-30 | 4 | -8/+22 | |
| | | | | ||||||
* | | | | security fix from http://www.openssl.org/news/secadv_20030930.txt | markus | 2003-09-30 | 3 | -2/+11 | |
| | | | | | | | | | | | | | | | | see also http://cvs.openssl.org/chngview?cn=11471 | |||||
* | | | | Revert BN_cmp() change. Its arguments are const. Spotted by miod@. | otto | 2003-09-29 | 1 | -3/+0 | |
| | | | | | | | | | | | | | | | | ok deraadt@ | |||||
* | | | | Return immediately if argument to BN_sub_word is zero. | otto | 2003-09-25 | 1 | -0/+3 | |
| | | | | | | | | | | | | | | | | ok markus@ deraadt@ | |||||
* | | | | Use BN_is_zero(), not x->top == 0 to test if a BN is zero. | otto | 2003-09-25 | 1 | -3/+3 | |
| | | | | | | | | | | | | | | | | ok markus@ deraadt@ | |||||
* | | | | Add extra calls to bn_fix_top() in BN_cmp(), since some functions may | otto | 2003-09-25 | 1 | -0/+3 | |
| | | | | | | | | | | | | | | | | | | | | | | | | leave an invalid BN. ok markus@ deraadt@ | |||||
* | | | | Off-by-ones, from aaron@ | miod | 2003-09-22 | 2 | -2/+2 | |
| | | | | ||||||
* | | | | You shall NOT BREAK THE TREE | deraadt | 2003-08-25 | 2 | -6/+0 | |
| | | | | ||||||
* | | | | Setup /dev/crypto early (SSL_library_init) to make sure it's actually done | jason | 2003-08-25 | 2 | -0/+6 | |
| | | | | | | | | | | | | | | | | for all applications; ok markus and deraadt | |||||
* | | | | Do not produce a corrupt BIGNUM when adding 0 to 0 using BN_add_word(). | otto | 2003-08-21 | 1 | -0/+3 | |
| | | | | | | | | | | | | | | | | ok markus@ | |||||
* | | | | support AES with 192 and 256 bit keys, too. | markus | 2003-08-07 | 1 | -58/+60 | |
| | | | | | | | | | | | | | | | | tested with kern.cryptodevallowsoft=1; ok deraadt@ | |||||
* | | | | Remove some double semicolons (hmm, do two semis equal a maxi?). | millert | 2003-08-06 | 7 | -7/+7 | |
| | | | | | | | | | | | | | | | | I've skipped the GNU stuff for now. From Patrick Latifi. | |||||
* | | | | hit CLEANFILES also for cleandir target | deraadt | 2003-07-02 | 1 | -2/+2 | |
| | | | | ||||||
* | | | | the the | deraadt | 2003-06-21 | 4 | -4/+4 | |
| | | | | ||||||
* | | | | obsolete | markus | 2003-06-13 | 5 | -1618/+0 | |
| | | | | ||||||
* | | | | nuke term 3, since we're all in ~deraadt/terms and I clued in now. | beck | 2003-06-03 | 1 | -3/+0 | |
| | | | | ||||||
* | | | | swap /usr/include/openssl and /usr/include/ssl, clean up the Makefiles | markus | 2003-06-02 | 2 | -35/+25 | |
| | | | | | | | | | | | | | | | | get rid old include files; with itojun@ and tdeval@; ok itojun@, deraadt@ | |||||
* | | | | merge 0.9.7b with local changes; crank majors for libssl/libcrypto | markus | 2003-05-12 | 483 | -4889/+7446 | |
| | | | | ||||||
* | | | | This commit was generated by cvs2git to track changes on a CVS vendor | markus | 2003-05-11 | 65 | -40/+6303 | |
|\| | | | | | | | | | | | branch. | |||||
| * | | | import 0.9.7b (without idea and rc5) | markus | 2003-05-11 | 500 | -4277/+12804 | |
| | | | |