Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Handle dynamic definition of SIGSTKSZ as of glibc 2.34 on Linux. | bcook | 2021-03-27 | 1 | -7/+24 | |
| | | | | ok bluhm@, inoguchi@, tb@, deraadt@ | |||||
* | Add test-sig-algs-renegotiation-resumption.py | tb | 2021-03-26 | 1 | -1/+5 | |
| | | | | This test currently fails but may soon be fixed. | |||||
* | The server only sends a cookie during a HRR, not a SH | tb | 2021-03-24 | 1 | -4/+4 | |
| | ||||||
* | Update regress for new_cipher rename. | jsing | 2021-03-24 | 2 | -6/+6 | |
| | ||||||
* | Don't leak ca in test_cms_sign_verify(). | tb | 2021-03-22 | 1 | -1/+2 | |
| | | | | Reported by Ilya Shipitsin | |||||
* | Plug a few memory leaks reported by Ilya Shipitsin | tb | 2021-03-22 | 1 | -9/+7 | |
| | ||||||
* | Revise regress to match handshake struct changes. | jsing | 2021-03-21 | 1 | -18/+18 | |
| | ||||||
* | Plug memory leak reported by Ilya Shipitsin | tb | 2021-03-21 | 1 | -3/+2 | |
| | | | | | Since r1.7, input in base64_decoding_test() is allocated unconditionally, so free it unconditionally. | |||||
* | typo | tb | 2021-03-20 | 1 | -2/+2 | |
| | ||||||
* | Add new test-tls13-multiple-ccs-messages.py | tb | 2021-03-20 | 1 | -1/+8 | |
| | | | | | | | | | | | This is a test that checks for NSS's CCS flood DoS CVE-2020-25648. The test script currently fails on LibreSSL and OpenSSL 1.1.1j because it sends invalid records with version 0x0300 instead of 0x0303. We have the ccs_seen logic corresponding to NSS's fix: https://hg.mozilla.org/projects/nss/rev/57bbefa793232586d27cee83e74411171e128361 but we do allow up to two CCS due to an interop issue with Fizz, so at least one of the tests will likey be broken once the record version is fixed. | |||||
* | Update for DTLSv1.2 being enabled. | jsing | 2021-03-17 | 1 | -4/+4 | |
| | ||||||
* | Update for DTLSv1.2 version handling. | jsing | 2021-03-17 | 1 | -6/+90 | |
| | ||||||
* | Revise TLS extension regress to match version handling changes. | jsing | 2021-03-10 | 1 | -57/+25 | |
| | ||||||
* | Update regress to match TLS versions change. | jsing | 2021-02-25 | 1 | -6/+6 | |
| | ||||||
* | Make this test module aware so it passes with Go 1.16 | tb | 2021-02-23 | 2 | -0/+8 | |
| | ||||||
* | Revise regress to match change in SSL{_CTX,}_get_{min,max}_proto_version(). | jsing | 2021-02-20 | 1 | -34/+45 | |
| | ||||||
* | A few more flag combo's to test | otto | 2021-02-12 | 1 | -2/+14 | |
| | ||||||
* | Update DTLS client hello due to ECC changes. | jsing | 2021-02-08 | 1 | -5/+8 | |
| | ||||||
* | Enable auto DHE and disable session tickets for some tests. | jsing | 2021-02-07 | 1 | -12/+13 | |
| | | | | This allows us to drop the server messages that we intend on dropping. | |||||
* | Only hexdump packets/messages on higher debug levels. | jsing | 2021-02-06 | 1 | -3/+4 | |
| | ||||||
* | Test reads and writes between the client and server. | jsing | 2021-02-06 | 1 | -3/+49 | |
| | ||||||
* | wrap an overlong line | tb | 2021-01-27 | 1 | -2/+3 | |
| | ||||||
* | Avoid NULL deref on BIO_new{_mem_buf,}() failure. | tb | 2021-01-22 | 2 | -7/+11 | |
| | ||||||
* | don't set AUTO_RETRY. it's a remnant of an experiment. | tb | 2021-01-21 | 1 | -3/+1 | |
| | ||||||
* | A few minor tweaks to make my OCD happy. | tb | 2021-01-12 | 1 | -12/+9 | |
| | | | | | Sort headers, unwrap a line, fix grammar in spelling and simplify the check for test failure. | |||||
* | Print error if SSL_{connect,accept,shutdown}(3) don't run to completion. | tb | 2021-01-11 | 1 | -3/+13 | |
| | ||||||
* | Shut down the TLS connections properly. | tb | 2021-01-11 | 1 | -3/+28 | |
| | ||||||
* | Include headers used instead of relying on ssl.h pulling in the world. | tb | 2021-01-11 | 1 | -1/+7 | |
| | ||||||
* | Merge handshake_loop() into handshake(). There's no benefit in having | tb | 2021-01-10 | 1 | -18/+7 | |
| | | | | this factored into a separate function. | |||||
* | tweak a comment | tb | 2021-01-10 | 1 | -2/+2 | |
| | ||||||
* | Link shared ciphers test to build | tb | 2021-01-10 | 1 | -1/+3 | |
| | ||||||
* | Add a regress for SSL_get_shared_ciphers() for the change of returned | tb | 2021-01-10 | 1 | -0/+457 | |
| | | | | | | ciphers in ssl_lib.c r1.240 and TLSv1.3 support in tls13_server.c r1.69. requested by jsing | |||||
* | whitespace | tb | 2021-01-09 | 2 | -7/+7 | |
| | ||||||
* | Remove unused categories in re_guts; they are written to but never read. | millert | 2020-12-31 | 1 | -39/+2 | |
| | | | | From miod@, OK tb@ | |||||
* | Fix an off-by-one error in the marking of the O_CH operator following | millert | 2020-12-28 | 1 | -1/+4 | |
| | | | | | an OOR2 operator. Also includes a regress test for the issue. From FreeBSD via miod@ | |||||
* | Start each regress run from scratch with new keys and CA database. | bluhm | 2020-12-26 | 1 | -12/+17 | |
| | ||||||
* | Convert CA regress implementation from shell script to make file. | bluhm | 2020-12-26 | 5 | -141/+100 | |
| | | | | Ensure that it works with obj directory and link regress to build. | |||||
* | Add to *FLAGS and *ADD rather than overwriting them | tb | 2020-12-25 | 1 | -6/+6 | |
| | | | | | This makes CFLAGS pick up -O2, which shaves a few seconds runtime off these very slow tests. | |||||
* | Remove echo headlines. | bluhm | 2020-12-17 | 15 | -46/+15 | |
| | ||||||
* | Enable t_mmap-1 test. It is skipped on NetBSD, but works for us. | bluhm | 2020-12-06 | 2 | -3/+10 | |
| | ||||||
* | Extend the methods test to cover dtls methods as well | tb | 2020-12-01 | 1 | -1/+57 | |
| | ||||||
* | Enable ssl_methods unit test. | tb | 2020-12-01 | 1 | -1/+2 | |
| | ||||||
* | Add an ssl_methods() unit test that currently only covers the | tb | 2020-12-01 | 1 | -0/+192 | |
| | | | | | behavior of SSL_is_server(). This would have caught the regression introduced in the method unification. | |||||
* | $OpenBSD$ | tb | 2020-11-19 | 1 | -0/+1 | |
| | ||||||
* | Don't leak verify and store contexts. | tb | 2020-11-18 | 1 | -1/+3 | |
| | ||||||
* | Run the atf cleanup block after each test. This makes more tests | bluhm | 2020-11-11 | 1 | -9/+11 | |
| | | | | pass when run as non root. | |||||
* | Declare prototype of __syscall locally. Fixes t_syscall test. | bluhm | 2020-11-10 | 2 | -3/+7 | |
| | ||||||
* | Sync libc syscall tests with changes in upstream NetBSD. Use #ifdef | bluhm | 2020-11-09 | 20 | -283/+212 | |
| | | | | | | | to document differences to NetBSD behaviour, this helps to track upstream. Mark currently failing test as expected failures. So test programs get compiled and executed, but it shows that further investigation is necceassry. | |||||
* | Skip test if web server cannot be pinged. | bluhm | 2020-11-05 | 1 | -6/+14 | |
| | ||||||
* | botan2 uses C++11, so use ports-gcc on gcc-archs | tb | 2020-10-30 | 1 | -1/+12 | |
| | | | | This makes this interop test pass on sparc64. |