Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | | make Nm match Dt; | jmc | 2004-02-10 | 1 | -10/+2 | |
| | | | ||||||
* | | | make Nm match Dt; found by pb@ | jmc | 2004-02-09 | 1 | -23/+2 | |
| | | | | | | | | | | | | some of this ok espie@, all of it ok deraadt@ | |||||
* | | | simpler ssl manpages, using --name=. | espie | 2004-02-09 | 1 | -117/+33 | |
| | | | | | | | | | | | | okay markus@ | |||||
* | | | punctuate variable; okay jmc@. | espie | 2004-02-09 | 1 | -2/+2 | |
| | | | ||||||
* | | | remove some debug code and cleanup.. | deraadt | 2004-02-04 | 2 | -36/+12 | |
| | | | ||||||
* | | | Traditionally, getopt(3) has treated "--foo" the same as "--". However, | millert | 2004-02-04 | 1 | -10/+9 | |
| | | | | | | | | | | | | | | | | | | | | | | | | this can cause confusion when a user tries to use a long option with a program that only supports short options. Furthermore, it appears to be in violation of POSIX, which states that "--" shall indicate the end of argument processing, not any string that begins with "--". OK otto@ and closes PR 3666. | |||||
* | | | H comes before J; | jmc | 2004-02-04 | 1 | -6/+6 | |
| | | | ||||||
* | | | OK, this time the AES soft keys work with ssh and such. I spent over 3 | deraadt | 2004-02-03 | 2 | -32/+126 | |
| | | | | | | | | | | | | | | | hours learning that OpenSSL's internal functions for AES extended keys generate screwy byte order swapped data.. | |||||
* | | | oops, software key gen bug | deraadt | 2004-02-03 | 2 | -70/+20 | |
| | | | ||||||
* | | | Switch to using software generated extended keys (because the cpu cannot | deraadt | 2004-02-03 | 2 | -20/+70 | |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | yet generate 192 & 256 bit keys). Ensure that 192 and 256 are in the nids table. This also accelerates performance for 128 a tiny bit: type 16 bytes 64 bytes 256 bytes 1024 bytes 8192 bytes aes-128-cbc 34921.48k 129617.82k 362059.93k 623649.81k 790397.77k aes-192-cbc 26227.43k 99215.33k 283242.84k 509881.15k 665323.22k aes-256-cbc 26133.22k 97458.06k 265990.84k 457824.69k 579835.09k | |||||
* | | | Obsoleted by getopt_long.c | millert | 2004-02-03 | 1 | -116/+0 | |
| | | | ||||||
* | | | Correct the arm ifdefs previously inserted, is working correctly now. | drahn | 2004-02-03 | 1 | -3/+3 | |
| | | | ||||||
* | | | config for arm, copied from powerpc/sparc ok markus@ | drahn | 2004-02-03 | 1 | -0/+180 | |
| | | | ||||||
* | | | If on an i386, detect existance of the VIA C3 xcrypt-* using sysctl of | deraadt | 2004-02-03 | 2 | -8/+348 | |
| | | | | | | | | | | | | | | | | | | | | | | | | the machdep.xcrypt node. If they exist, use the xcrypt-cbc instruction to accelerate aes-{128,192,256}-cbc, for more than 100x performance increase. This code has no effect on any cpu... Tested thus far using openssl speed command, and of course, ssh. 778MB/sec AES-128-CBC performance at 8192 byte block size. | |||||
* | | | 'F'reeguard doc, as reported missing by brad. nit free thanks to jmc | tedu | 2004-02-02 | 1 | -1/+8 | |
| | | | ||||||
* | | | Add const type qualifier. ok jmc@ | nordin | 2004-02-01 | 2 | -4/+4 | |
| | | | ||||||
* | | | s/arm32/arm/ with VFP bit to match netbsd. | drahn | 2004-02-01 | 1 | -3/+3 | |
| | | | ||||||
* | | | cleanup byte order detection per arch a bit; mickey ok | deraadt | 2004-01-29 | 1 | -14/+4 | |
| | | | ||||||
* | | | the rest of the libs stuff; from art@ again | mickey | 2004-01-28 | 3 | -2/+363 | |
| | | | ||||||
* | | | use new .St macro; | jmc | 2004-01-25 | 3 | -5/+5 | |
| | | | ||||||
* | | | `Ns' implies `No', so `Ns No' -> `Ns'; (even simpler in adduser(8)) | jmc | 2004-01-23 | 5 | -10/+10 | |
| | | | | | | | | | | | | discussed with todd@ | |||||
* | | | Use correct cvs id string. | hshoexer | 2004-01-23 | 6 | -6/+6 | |
| | | | | | | | | | | | | ok deraadt@ | |||||
* | | | remove junk return at end | deraadt | 2004-01-23 | 2 | -4/+0 | |
| | | | ||||||
* | | | enable acss. | hshoexer | 2004-01-23 | 5 | -5/+17 | |
| | | | | | | | | | | | | | | | | | | | | | ok @deraadt @markus Also bump minor version. ok @deraadt | |||||
* | | | evp api and manual page for acss | hshoexer | 2004-01-23 | 3 | -0/+236 | |
| | | | | | | | | | | | | ok deraadt@ markus@ | |||||
* | | | Add acss to libcrypto. | hshoexer | 2004-01-23 | 6 | -0/+614 | |
| | | | | | | | | | | | | ok deraadt@ markus@ | |||||
* | | | Call _exit() not exit() from abort() if we are unable to kill ourselves | millert | 2004-01-20 | 1 | -3/+3 | |
| | | | | | | | | | | | | | | | to avoid flushing stdio twice. This code path should never really happen though. Also make the function declaration ANSI. OK deraadt@ | |||||
* | | | Fix the example code. The loop invariant 'i' was not bound by MAXTOKENS | millert | 2004-01-20 | 1 | -3/+3 | |
| | | | | | | | | | | | | | | | which could result in writing a NUL byte outside of tokens[]. A fix, from Patrick Latifi, is to move the increment into the "i < MAXTOKENS - 1" block. | |||||
* | | | Fix printf format string. ok markus@ | otto | 2004-01-14 | 1 | -1/+1 | |
| | | | ||||||
* | | | - Rename index to longindex and explain its use. | fgsch | 2004-01-06 | 1 | -9/+20 | |
| | | | | | | | | | | | | | | | | | | | | | | | | - Talk about zeroing the last element of the longopts array. - Remove '?' from the switch and some KNF to the code. - Change 0's to NULL where appropriate. jmc@ ok. | |||||
* | | | sync protos with <netdb.h>; | jmc | 2003-12-30 | 1 | -3/+3 | |
| | | | | | | | | | | | | from Andrey Matveev; | |||||
* | | | niels kindly dropped clause 3/4 from the license. tnx! | itojun | 2003-12-12 | 1 | -6/+1 | |
| | | | ||||||
* | | | we can skip arc4random() call here. markus | itojun | 2003-12-12 | 1 | -2/+2 | |
| | | | ||||||
* | | | correct non-repetitive ID code, based on comments from niels provos. | itojun | 2003-12-10 | 1 | -12/+16 | |
| | | | | | | | | | | | | | | | | | | - seed2 is necessary, but use it as "seed2 + x" not "seed2 ^ x". - skipping number is not needed, so disable it for 16bit generator (makes the repetition period to 30000) | |||||
* | | | Discard first 256 bytes of keystream, as per recommendation in | djm | 2003-11-26 | 1 | -1/+10 | |
| | | | | | | | | | | | | | | | "Weaknesses in the Key Scheduling Algorithm of RC4", Fluhrer, Mantin and Shamir. ok itojun@ | |||||
* | | | wording improvements from Brian Poole; | jmc | 2003-11-25 | 1 | -5/+4 | |
| | | | | | | | | | | | | kill a .Pp before a display; | |||||
* | | | Break up the colon-separated path to -I into two -I args so the tree | millert | 2003-11-19 | 1 | -2/+2 | |
| | | | | | | | | | | | | can build with perl 5.8.2. Ok markus@ | |||||
* | | | only whine about recursion once, so we don't get into problems with loops. | tedu | 2003-11-19 | 1 | -19/+26 | |
| | | | ||||||
* | | | use bn_asm_vax.S (from netbsd); test + ok by miod | markus | 2003-11-18 | 18 | -25/+588 | |
| | | | | | | | | | | | | | | | | | | | | | | | | use asm code for i386, except for the CBC code, because it is not clean PIC code. add <machime/asm.h> support to x86unix.pl tested by: nick (on 30386), henning, djm, tedu, jmc and more; no shlib minor crank necessary, only internal symbols changed. | |||||
* | | | remove obsolete files | markus | 2003-11-13 | 10 | -6089/+0 | |
| | | | ||||||
* | | | crank minor for ERR_release_err_state_table | markus | 2003-11-11 | 1 | -1/+1 | |
| | | | ||||||
* | | | merge 0.9.7c; minor bugsfixes; | markus | 2003-11-11 | 132 | -435/+1127 | |
| | | | | | | | | | | | | | | | API addition: ERR_release_err_state_table [make includes before you build libssl/libcrypto] | |||||
* | | | This commit was generated by cvs2git to track changes on a CVS vendor | markus | 2003-11-11 | 6 | -4/+1240 | |
|\ \ \ | | |/ | |/| | branch. | |||||
| * | | import 0.9.7c | markus | 2003-11-11 | 102 | -280/+1976 | |
| | | | ||||||
* | | | don't destroy old pointer if realloc fails; from Daniel Lucq; ok deraadt@ | markus | 2003-10-25 | 2 | -6/+14 | |
| | | | ||||||
* | | | by popular demand, malloc guard pages. insert an unreadable/unwriteable | tedu | 2003-10-16 | 2 | -5/+52 | |
| | | | | | | | | | | | | | | | | | | | | | | | | page after each page size allocation to detect overrun. this is somewhat electric fence like, while attempting to be mostly usable in production. also, use tdeval's chunk randomization code. enabled with the G option. ok deraadt and co. | |||||
* | | | abort on errors by default. workaround so running out of memory isn't | tedu | 2003-10-15 | 1 | -3/+3 | |
| | | | | | | | | | | | | | | | actually an error, A still applies full effect. suggested by phk. ok deraadt@ tdeval@ | |||||
* | | | ANSIfication; most from Patrick Latifi | millert | 2003-10-06 | 1 | -72/+39 | |
| | | | | | | | | | | | | OK deraadt@ | |||||
* | | | Fix off-by-one, patch from Patrick Latifi; closes PR 3492 | millert | 2003-10-03 | 1 | -5/+5 | |
| | | | ||||||
* | | | two minor fixes. set errno on recursive calls. ENOMEM suggested by marc@. | tedu | 2003-10-02 | 1 | -4/+7 | |
| | | | | | | | | | | | | | | | lock before setting malloc_func, not after. ok cloder@ deraadt@ |