Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Add a shim to mimic the BoringSSL sk_delete_if function. | beck | 2023-04-26 | 1 | -0/+23 | |
| | | | | | | | We add this locally as a function to avoid delving into the unholy macro madness of STACK_OF(3). ok tb@ jsing@ | |||||
* | Adapt the sk_find calls from BoringSSL's api to ours. | beck | 2023-04-26 | 1 | -6/+5 | |
| | | | | ok tb@ jsing@ | |||||
* | Add the STACK_OF declarations we require. | beck | 2023-04-26 | 1 | -2/+46 | |
| | | | | ok tb@ jsing@ | |||||
* | Change OPENSSL_malloc|free|memset and friends to the normal versions. | beck | 2023-04-26 | 1 | -6/+6 | |
| | | | | ok tb@ jsing@ | |||||
* | Fix error code goop | beck | 2023-04-26 | 1 | -5/+8 | |
| | | | | ok tb@ jsing@ | |||||
* | Use the correct headers to compile with libressl | beck | 2023-04-26 | 1 | -5/+4 | |
| | ||||||
* | Import policy.c from BoringSSL as x509_policy.c | beck | 2023-04-26 | 1 | -0/+790 | |
| | | | | | | | | | | | This is an implementation of the X509 policy processing using a DAG instead of a tree to avoid the problem of exponential expansion of the policy tree as specified in RFC 5280 For details see: https://boringssl-review.googlesource.com/c/boringssl/+/55762 ok tb@ jsing@ | |||||
* | Document those BIO_ctrl(3) command constants | schwarze | 2023-04-26 | 5 | -37/+162 | |
| | | | | that correspond to more than one macro each. | |||||
* | Remove the now unused bio_pk7.c | tb | 2023-04-26 | 2 | -65/+1 | |
| | ||||||
* | Move BIO_new_PKCS7() to the the other streaming stuff in pk7_mime.c | tb | 2023-04-26 | 2 | -8/+8 | |
| | ||||||
* | KNF nit | tb | 2023-04-26 | 1 | -2/+3 | |
| | ||||||
* | Clean up ec.h a little. | tb | 2023-04-26 | 1 | -186/+31 | |
| | | | | | The doxygen comments are either obvious or otherwise unhelpful and generally an eye sore. Go read the manpage if the header isn't enough. | |||||
* | Remove e_old.c again | tb | 2023-04-26 | 3 | -171/+1 | |
| | | | | | | | | | Also remove nonexistent symbols #defined to other symbols that confuse some linkers in -portable. This commit entails no ABI change on OpenBSD. Discussed with jsing | |||||
* | Reinstate e_old.c it is still used by -portable | tb | 2023-04-25 | 2 | -1/+161 | |
| | ||||||
* | Remove documentation of BN_BLINDING_{g,s}et_thread_id | tb | 2023-04-25 | 1 | -17/+2 | |
| | ||||||
* | e_old can also go | tb | 2023-04-25 | 2 | -161/+1 | |
| | ||||||
* | Remove the deprecated API from BN | tb | 2023-04-25 | 4 | -174/+5 | |
| | ||||||
* | GF2m bites the dust. It won't be missed. | tb | 2023-04-25 | 12 | -4655/+11 | |
| | ||||||
* | ASN1_item_ndef_i2d also goes. discussed with deraadt | tb | 2023-04-25 | 1 | -1/+0 | |
| | ||||||
* | Remove commented version of OPENSSL_NO_EC2M | tb | 2023-04-25 | 1 | -1/+0 | |
| | ||||||
* | Remove duplicate NID definitions | tb | 2023-04-25 | 1 | -11/+1 | |
| | ||||||
* | LIBRESSL_NEXT_API is no longer needed | tb | 2023-04-25 | 1 | -2/+0 | |
| | ||||||
* | Remove prototype of EC_GFp_nist_method() | tb | 2023-04-25 | 1 | -8/+1 | |
| | ||||||
* | Move EC_KEY_{insert,set}_key_method_data() to internal-only | tb | 2023-04-25 | 4 | -22/+15 | |
| | ||||||
* | Move low level BIO_new_NDEF API to internal-only | tb | 2023-04-25 | 6 | -25/+29 | |
| | ||||||
* | Remove proxy cert remnants | tb | 2023-04-25 | 4 | -492/+2 | |
| | ||||||
* | Remove NETSCAPE_CERT_SEQUENCE | tb | 2023-04-25 | 4 | -191/+4 | |
| | ||||||
* | Move the policy STACK_OF stuff to pcy_int.h as well | tb | 2023-04-25 | 2 | -50/+45 | |
| | ||||||
* | Remove SXNET | tb | 2023-04-25 | 9 | -638/+7 | |
| | | | | Unused and no authorative information was found online in 2016 | |||||
* | Move truncated sha-2 and sha3 out of #ifdef wrappers | tb | 2023-04-25 | 1 | -5/+1 | |
| | ||||||
* | Use X509_STORE_CTX_get1_{certs,crls}() instead of an alias | tb | 2023-04-25 | 1 | -3/+3 | |
| | ||||||
* | X509_STORE_get1_{certs,crls} become X509_STORE_CTX_* also in | tb | 2023-04-25 | 1 | -2/+2 | |
| | | | | Symbols.namespace | |||||
* | X509_STORE_get1_{certs,crls} become X509_STORE_CTX_* | tb | 2023-04-25 | 3 | -28/+5 | |
| | | | | This matches the OpenSSL 1.1 API a bit better. | |||||
* | Move the policy tree code to internal-only | tb | 2023-04-25 | 8 | -86/+42 | |
| | | | | | A few hooks remain in the legacy validator, which will soon be replaced with something better. The rest of the tentacles are now largely contained. | |||||
* | Remove i2d_PKCS7_NDEF from the hidden version as well | tb | 2023-04-25 | 1 | -2/+1 | |
| | ||||||
* | Remove documentation for i2d_PKCS7_NDEF | tb | 2023-04-25 | 1 | -15/+2 | |
| | ||||||
* | Remove i2d_PKCS7_NDEF | tb | 2023-04-25 | 3 | -13/+2 | |
| | ||||||
* | BN_RECP_CTX moves to internal | tb | 2023-04-25 | 2 | -5/+4 | |
| | ||||||
* | Remove CTS mode | tb | 2023-04-25 | 3 | -298/+2 | |
| | | | | ok jsing | |||||
* | Remove TS_VERIFY_CTX_init() | tb | 2023-04-25 | 2 | -11/+2 | |
| | ||||||
* | Remove PEM wrappers for NETSCAPE_CERT_SEQUENCE | tb | 2023-04-25 | 2 | -36/+2 | |
| | ||||||
* | Remove the horror show that is bn_nist and ecp_nist | tb | 2023-04-25 | 4 | -1529/+2 | |
| | | | | | | This code is full of problematic C and is also otherwise of questionable quality. It is far from constant time and jsing informs me it also isn't faster. Good riddance. | |||||
* | Remove BN_init() documentation | tb | 2023-04-25 | 1 | -40/+2 | |
| | ||||||
* | Remove BN_CTX_init() documentation | tb | 2023-04-25 | 1 | -23/+3 | |
| | ||||||
* | Remove the no longer used BN_MONT_CTX_init() | tb | 2023-04-25 | 2 | -15/+2 | |
| | ||||||
* | Move a few now internal prototypes to bn_local.h | tb | 2023-04-25 | 2 | -24/+17 | |
| | ||||||
* | Remove old BN_one/BN_zero compat stuff | tb | 2023-04-25 | 1 | -13/+1 | |
| | | | | ok jsing | |||||
* | Remove X9.31 support | tb | 2023-04-25 | 7 | -493/+6 | |
| | | | | ok jsing | |||||
* | Remove the no longer used BN_CTX_init() | tb | 2023-04-25 | 2 | -14/+2 | |
| | | | | ok jsing | |||||
* | Bump LibreSSL version to 3.8.0 | tb | 2023-04-25 | 1 | -2/+2 | |
| |