Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Make sure we use a sigjmp_buf in the sigsetjmp() part of the test. | miod | 2015-11-08 | 4 | -4/+7 |
| | |||||
* | Add EVP_aead_chacha20_poly1305_ietf() - The informational RFC 7539, | reyk | 2015-11-02 | 2 | -0/+42 |
| | | | | | | | | | "ChaCha20 and Poly1305 for IETF Protocols", introduced a modified AEAD construction that is incompatible with the common style that has been already used in TLS with EVP_aead_chacha20_poly1305(). The IETF version also adds a constant (salt) that is prepended to the nonce. OK mikeb@ jsing@ | ||||
* | print unsigned ints with %u, not %d. Reported by Pascal Cuoq. | miod | 2015-10-30 | 1 | -2/+2 |
| | |||||
* | Add explicit LL suffixes to the numerical constants which do not fit in 32 bits. | miod | 2015-10-30 | 1 | -8/+8 |
| | |||||
* | Pull in <sys/types.h> to get ssize_t or <stdint.h> to get uint32_t, instead of | miod | 2015-10-30 | 2 | -0/+2 |
| | | | | | relying upon previously included headers to do this, to enhance portability; from Pascal Cuoq, libressl github pull request #52 | ||||
* | Change test to use length 128 (shortest long-form encoding).libressl-v2.3.1 | doug | 2015-10-25 | 1 | -2/+2 |
| | | | | From BoringSSL commit: d13a5e15d4e4eb51513be665306a2beba39869df | ||||
* | Hide __atexit and __atexit_register_cleanup() | guenther | 2015-10-25 | 1 | -2/+3 |
| | | | | | | | | Wrap __cxa_{atexit,finalize}() so the call from exit() goes direct Switch regress/lib/libc/atexit/ to be built with -static so that it can still access __atexit* ok millert@ jca@ | ||||
* | Missing initializer; spotted by coverity. | miod | 2015-10-25 | 1 | -2/+2 |
| | |||||
* | Use dprintf() instead of fprintf() in the signal handler | guenther | 2015-10-25 | 1 | -3/+4 |
| | |||||
* | Cast ctype functions' arguments to unsigned char. | mmcc | 2015-10-23 | 1 | -5/+5 |
| | |||||
* | Add ifnameindex to te libc regress tests | claudio | 2015-10-23 | 1 | -3/+3 |
| | |||||
* | Add a regress test for if_indextoname() and if_nametoindex() | claudio | 2015-10-22 | 2 | -0/+42 |
| | |||||
* | Extend tests to call ASN1_{GENERALIZED,UTC,}TIME_set_string() with a NULL | jsing | 2015-10-22 | 1 | -1/+19 |
| | | | | | | | pointer - because, you know, you might want to set a string on a NULL object. The previous implementation apparently allowed this as a way of testing if the string was valid... probably because the *_check() functions are only useable after the string has already been set. | ||||
* | Fix case where we wanted to test ASN1_TIME_set_string() but were testing | jsing | 2015-10-22 | 2 | -6/+6 |
| | | | | ASN1_UTCTIME_set_string() twice instead. | ||||
* | Add a regress for libc handling of SIGTHR | guenther | 2015-10-22 | 2 | -0/+71 |
| | |||||
* | Change regress to not believe legacy times are valid | beck | 2015-10-19 | 1 | -65/+4 |
| | |||||
* | Need <string.h> for memset() | guenther | 2015-10-18 | 1 | -1/+2 |
| | |||||
* | Single byte read/write tests. | jsing | 2015-10-13 | 1 | -0/+67 |
| | |||||
* | Add test coverage for peer certificate info and connection info. | jsing | 2015-10-13 | 2 | -6/+231 |
| | |||||
* | Make regress work again post hackathon tls_handshake/tls_read/tls_write | jsing | 2015-10-13 | 1 | -7/+42 |
| | | | | changes. | ||||
* | Add another invalid time, which is currently accepted. | jsing | 2015-10-02 | 1 | -1/+4 |
| | |||||
* | Fix a bug in the regress, and be much more pedantic about what is allowed | beck | 2015-09-30 | 1 | -22/+46 |
| | | | | | | | per RFC 5380 in an X509. RFC 5280 states that all times before 2050 must be specified as a UTCtime, not a Generalized time, and all times after must be a UTC time. By extension this also means the smallest time allowed per RFC 5280 is 500101000000Z and the largest is 99991231235959Z.. | ||||
* | Add an rfc5280 test suite to test x509_cmp_time. | beck | 2015-09-29 | 2 | -2/+362 |
| | | | | | | Note some of these will yet fail with the current libcrypto as the current X509_cmp_time is not RFC5280 compliant ok jsing@ | ||||
* | Fix sha2 regression test for libcrypto. | doug | 2015-09-29 | 1 | -2/+2 |
| | | | | | | | | | By default, "openssl sha" used SHA-0. However, it was possible to use the form "openssl sha -sha256" to run SHA-256 instead. The regression test used this form. Since we removed SHA-0 support, the regress tests should now call "openssl <digest>". ok guenther@, bcook@ | ||||
* | check if openssl(1) actually works before proceeding | bcook | 2015-09-27 | 1 | -0/+2 |
| | | | | | It was possible for this test to pass even if the openssl command itself was missing. | ||||
* | Add DER encoding/decoding coverage for ASN.1 GENERALIZEDTIME and UTCTIME. | jsing | 2015-09-25 | 1 | -39/+158 |
| | |||||
* | Add initial regress tests for ASN.1 times. | jsing | 2015-09-25 | 3 | -1/+372 |
| | |||||
* | Zap RANDFILE. | lteo | 2015-09-16 | 2 | -5/+3 |
| | |||||
* | Test the exported strsignal() API, not the (now hidden) internal API | guenther | 2015-09-14 | 1 | -8/+2 |
| | | | | noted by daniel@ | ||||
* | Temporarily revive MD4 for MS CHAP support. | doug | 2015-09-14 | 3 | -1/+136 |
| | |||||
* | Remove MD4 support from LibreSSL. | doug | 2015-09-13 | 3 | -136/+1 |
| | | | | | | | | MD4 should have been removed a long time ago. Also, RFC 6150 moved it to historic in 2011. Rides the major crank from removing SHA-0. Discussed with many including beck@, millert@, djm@, sthen@ ok jsing@, input + ok bcook@ | ||||
* | Another style(9) grenade. | jsing | 2015-09-13 | 1 | -550/+825 |
| | |||||
* | Remove SHA-0 support. | doug | 2015-09-13 | 4 | -176/+1 |
| | | | | | | | SHA-0 was withdrawn shortly after publication 20 years ago and replaced with SHA-1. This will require a major crank. ok bcook@, jsing@ | ||||
* | Revise regression test so that it works correctly with AES taking priority | jsing | 2015-09-13 | 1 | -34/+191 |
| | | | | if hardware acceleration is available. | ||||
* | Remove explicit NULL checks before *_free() calls and tidy some code. | jsing | 2015-09-13 | 1 | -28/+22 |
| | |||||
* | Use ECDH_size() and do some other clean up. | jsing | 2015-09-13 | 1 | -7/+6 |
| | |||||
* | remove e_os2.h includes | bcook | 2015-09-13 | 2 | -2/+0 |
| | | | | ok jsing@ | ||||
* | Wrap long lines. | jsing | 2015-09-13 | 1 | -16/+32 |
| | |||||
* | style(9) grenade. | jsing | 2015-09-13 | 1 | -153/+178 |
| | |||||
* | Cleanup enginetest a bit. | bcook | 2015-09-12 | 1 | -104/+84 |
| | | | | | It was the only thing preventing -Werror from building on some systems due to the unchecked asprintf's. | ||||
* | regress test that we do not allow a wildcard match for ".openbsd.org" | beck | 2015-09-11 | 1 | -1/+6 |
| | | | | against a wildcard of "*.openbsd.org" | ||||
* | fix verify to allow for servername->name | beck | 2015-09-11 | 1 | -25/+25 |
| | | | | ok jsing@ | ||||
* | Add an initial TLS client regress, which currently covers ClientHello | jsing | 2015-09-01 | 3 | -1/+369 |
| | | | | message generation. | ||||
* | Remove SSLv3 support from LibreSSL regression tests. | doug | 2015-08-27 | 3 | -56/+5 |
| | |||||
* | ISO8859-1 support has been removed | guenther | 2015-08-23 | 1 | -8/+1 |
| | | | | ok semarie@ | ||||
* | Don't hardcode /usr/src, use BSDSRCDIR | tobiasu | 2015-07-31 | 1 | -2/+2 |
| | |||||
* | Add VIS_DQ to escape double quotes. OK deraadt@ semarie@ reyk@ | millert | 2015-07-20 | 1 | -1/+3 |
| | |||||
* | simplify length checking in do_indefinite_convert | bcook | 2015-07-18 | 1 | -11/+17 |
| | | | | | Fixes Coverity 117506, 117507, 117508 ok doug@ | ||||
* | remove mysterious, decorative comment blocklets | bcook | 2015-07-18 | 1 | -21/+21 |
| | |||||
* | Explicitly mark ignored BN_* return vals in tests. | bcook | 2015-07-18 | 1 | -6/+6 |
| | | | | | The tests will fail all the same. Fixes Coverity 78811 21659 21658 21657. Discussed with beck@ |