Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Adjust ecdhtest.c for affine_coordinates change | tb | 2021-04-20 | 2 | -7/+7 | |
| | ||||||
* | Adjust ectest.c for affine_coordinates change | tb | 2021-04-20 | 1 | -17/+17 | |
| | ||||||
* | Adjust ectest.c for EC_GROUP_{g,s}et_curve change | tb | 2021-04-20 | 2 | -15/+15 | |
| | ||||||
* | The powerpc64 ELFv2 ABI explicitly states that exception enable bits | kettenis | 2021-04-19 | 1 | -1/+9 | |
| | | | | | | | and rounding control bits are not restored by longjmp(3). So expect the some failures on that platform. ok bluhm@ | |||||
* | revert previous. some of the keyupdate tests still fail occasionally | tb | 2021-04-14 | 1 | -2/+11 | |
| | ||||||
* | Enable test-tls13-keyupdate.py | tb | 2021-04-14 | 1 | -9/+2 | |
| | ||||||
* | move test-record-size-limit.py to unsupported | tb | 2021-04-14 | 1 | -4/+3 | |
| | ||||||
* | enable test-record-layer-fragmentation.py | tb | 2021-04-14 | 1 | -7/+2 | |
| | ||||||
* | factor argument to catch an alert mismatch into a helper function | tb | 2021-04-14 | 1 | -7/+8 | |
| | ||||||
* | enable test-tlsfuzzer-invalid-compression-methods.py | tb | 2021-04-13 | 1 | -5/+10 | |
| | ||||||
* | enable test-large-hello.py as a slow test | tb | 2021-04-13 | 1 | -3/+2 | |
| | ||||||
* | with new defaults, test-fuzzed-plaintext.py is no longer slow | tb | 2021-04-13 | 1 | -3/+2 | |
| | ||||||
* | move a few tests to the unsupported group and fix two comments | tb | 2021-04-13 | 1 | -15/+15 | |
| | ||||||
* | annotate test-ecdhe-rsa-key-exchange-with-bad-messages.py with expected | tb | 2021-04-13 | 1 | -2/+3 | |
| | | | | alerts and where to add them. | |||||
* | Enable test-cve-2016-6309.py | tb | 2021-04-08 | 1 | -3/+2 | |
| | ||||||
* | Use ERR_print_error_fp() to avoid leaking a BIO in fatal() | tb | 2021-04-07 | 1 | -2/+2 | |
| | ||||||
* | use errx() instead of err() | tb | 2021-04-06 | 1 | -8/+8 | |
| | ||||||
* | spaces -> tabs | tb | 2021-04-06 | 1 | -5/+5 | |
| | ||||||
* | minor style tweaks | tb | 2021-04-06 | 1 | -5/+6 | |
| | ||||||
* | Add missing error check for AES_unwrap_key(). | tb | 2021-04-04 | 1 | -1/+3 | |
| | ||||||
* | Fix two copy paste errors in error messages | tb | 2021-04-04 | 1 | -3/+3 | |
| | ||||||
* | Add tests for DTLSv1_2{,_client,_server}_method() | tb | 2021-04-04 | 1 | -1/+20 | |
| | ||||||
* | Use correct type for tmp in test_write_bytes() | tb | 2021-04-04 | 1 | -2/+2 | |
| | ||||||
* | Explicitly NULL pointers to avoid a double free. | tb | 2021-04-04 | 1 | -1/+3 | |
| | ||||||
* | Don't leak key and dh in the error path. | tb | 2021-04-04 | 1 | -4/+7 | |
| | ||||||
* | Clean up client and server tls{,_config} contexts in tls_test(). | tb | 2021-04-04 | 1 | -2/+11 | |
| | | | | Leaks reported by Ilya Shipitsin. | |||||
* | Run the CMAC tests through EVP_PKEY_new_CMAC_key(). | tb | 2021-04-03 | 1 | -10/+22 | |
| | ||||||
* | Two cases of BRE involving counts and backrefs that go wrong and | otto | 2021-04-02 | 1 | -1/+16 | |
| | | | | | similar that have no isssues. Reported by Michael Paoli. Failing cases commented out for now. | |||||
* | Remove workaround for missing d2i_DSAPrivateKey_fp prototype | tb | 2021-03-31 | 1 | -5/+1 | |
| | ||||||
* | Add regress coverage for TLSv1.2 record number increment. | jsing | 2021-03-29 | 1 | -8/+151 | |
| | ||||||
* | The failure mode of test-tls13-version-negotiation.py has changed. | tb | 2021-03-28 | 1 | -4/+2 | |
| | | | | Update comment. | |||||
* | Enable test-sig-algs-renegotiation-resumption.py. | tb | 2021-03-27 | 1 | -5/+6 | |
| | | | | | | | This test covers various scenarios with renegotiation and session resumption. In particular it crashes the OpenSSL 1.1.1j server due to the sigalg NULL deref fixed this week. We need --sig-algs-drop-ok since we do not currently implement signature_algorithms_cert. | |||||
* | Handle dynamic definition of SIGSTKSZ as of glibc 2.34 on Linux. | bcook | 2021-03-27 | 1 | -7/+24 | |
| | | | | ok bluhm@, inoguchi@, tb@, deraadt@ | |||||
* | Add test-sig-algs-renegotiation-resumption.py | tb | 2021-03-26 | 1 | -1/+5 | |
| | | | | This test currently fails but may soon be fixed. | |||||
* | The server only sends a cookie during a HRR, not a SH | tb | 2021-03-24 | 1 | -4/+4 | |
| | ||||||
* | Update regress for new_cipher rename. | jsing | 2021-03-24 | 2 | -6/+6 | |
| | ||||||
* | Don't leak ca in test_cms_sign_verify(). | tb | 2021-03-22 | 1 | -1/+2 | |
| | | | | Reported by Ilya Shipitsin | |||||
* | Plug a few memory leaks reported by Ilya Shipitsin | tb | 2021-03-22 | 1 | -9/+7 | |
| | ||||||
* | Revise regress to match handshake struct changes. | jsing | 2021-03-21 | 1 | -18/+18 | |
| | ||||||
* | Build options regress with -DLIBRESSL_INTERNAL. | jsing | 2021-03-21 | 1 | -2/+2 | |
| | | | | | This is currently needed for DTLS1_2_VERSION, however it should be used here regardless. | |||||
* | Plug memory leak reported by Ilya Shipitsin | tb | 2021-03-21 | 1 | -3/+2 | |
| | | | | | Since r1.7, input in base64_decoding_test() is allocated unconditionally, so free it unconditionally. | |||||
* | typo | tb | 2021-03-20 | 1 | -2/+2 | |
| | ||||||
* | Add new test-tls13-multiple-ccs-messages.py | tb | 2021-03-20 | 1 | -1/+8 | |
| | | | | | | | | | | | This is a test that checks for NSS's CCS flood DoS CVE-2020-25648. The test script currently fails on LibreSSL and OpenSSL 1.1.1j because it sends invalid records with version 0x0300 instead of 0x0303. We have the ccs_seen logic corresponding to NSS's fix: https://hg.mozilla.org/projects/nss/rev/57bbefa793232586d27cee83e74411171e128361 but we do allow up to two CCS due to an interop issue with Fizz, so at least one of the tests will likey be broken once the record version is fixed. | |||||
* | Update for DTLSv1.2 being enabled. | jsing | 2021-03-17 | 1 | -4/+4 | |
| | ||||||
* | Update for DTLSv1.2 version handling. | jsing | 2021-03-17 | 1 | -6/+90 | |
| | ||||||
* | Check for the existence of p5-IO-Socket-SSL by checking for its SSL.pm | tb | 2021-03-11 | 1 | -3/+4 | |
| | | | | | | | instead of running pkg_add which may block due to its locking mechanism. Precise file to check for suggested by sthen ok kn deraadt on previous version | |||||
* | Revise TLS extension regress to match version handling changes. | jsing | 2021-03-10 | 1 | -57/+25 | |
| | ||||||
* | zap spades of trailing whitespace | tb | 2021-02-26 | 1 | -266/+266 | |
| | ||||||
* | Update regress to match TLS versions change. | jsing | 2021-02-25 | 1 | -6/+6 | |
| | ||||||
* | Make this test module aware so it passes with Go 1.16 | tb | 2021-02-23 | 2 | -0/+8 | |
| |