Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Prefix the hybrid_corner_case test with test_ for consistency. | tb | 2021-05-03 | 1 | -3/+3 |
| | |||||
* | Exercise the point conversion bit for octet string representations | tb | 2021-05-03 | 1 | -1/+279 |
| | | | | of points on secp256r1. | ||||
* | Add a test that exercises the point conversion bit of the octet | tb | 2021-05-03 | 1 | -1/+362 |
| | | | | string representations of points on the binary curve sect571k1. | ||||
* | Add DTLS test in appstest.sh | inoguchi | 2021-04-27 | 1 | -1/+70 |
| | |||||
* | test-verify-unusual-wildcard-cert is no longer expected to fail with | tb | 2021-04-27 | 1 | -2/+1 |
| | | | | lib/libcrypto/x509/x509_constraints.c r1.16 | ||||
* | Relax SAN DNSname validation and constraints to permit non leading * | beck | 2021-04-27 | 1 | -8/+4 |
| | | | | | | | | | | | wildcards. While we may choose not to support them the standards appear to permit them optionally so we can't declare a certificate containing them invalid. Noticed by jeremy@, and Steffan Ulrich and others. Modify the regression tests to test these cases and not check the SAN DNSnames as "hostnames" anymore (which don't support wildcards). ok jsing@, tb@ | ||||
* | Remove "-4" option treatment and use it always on s_server test in appstest.sh | inoguchi | 2021-04-24 | 1 | -9/+2 |
| | |||||
* | Enable test-renegotiation-changed-clienthello.py but skip | tb | 2021-04-23 | 1 | -1/+7 |
| | | | | | "drop extended_master_secret in renegotiation" since we don't support this extension. | ||||
* | Add a test that roundtrips a bunch of points on all builtin curves | tb | 2021-04-21 | 2 | -6/+268 |
| | | | | | via point2oct and oct2point and that checks the corner case in hybrid encoding that was fixed in ec2_oct.c r1.13. | ||||
* | Adjust ectest.c for set_compressed_coordinates | tb | 2021-04-20 | 1 | -9/+9 |
| | |||||
* | Adjust ectest.c for get_Jprojective coordinate change | tb | 2021-04-20 | 1 | -2/+2 |
| | |||||
* | Adjust ecdhtest.c for affine_coordinates change | tb | 2021-04-20 | 2 | -7/+7 |
| | |||||
* | Adjust ectest.c for affine_coordinates change | tb | 2021-04-20 | 1 | -17/+17 |
| | |||||
* | Adjust ectest.c for EC_GROUP_{g,s}et_curve change | tb | 2021-04-20 | 2 | -15/+15 |
| | |||||
* | The powerpc64 ELFv2 ABI explicitly states that exception enable bits | kettenis | 2021-04-19 | 1 | -1/+9 |
| | | | | | | | and rounding control bits are not restored by longjmp(3). So expect the some failures on that platform. ok bluhm@ | ||||
* | revert previous. some of the keyupdate tests still fail occasionally | tb | 2021-04-14 | 1 | -2/+11 |
| | |||||
* | Enable test-tls13-keyupdate.py | tb | 2021-04-14 | 1 | -9/+2 |
| | |||||
* | move test-record-size-limit.py to unsupported | tb | 2021-04-14 | 1 | -4/+3 |
| | |||||
* | enable test-record-layer-fragmentation.py | tb | 2021-04-14 | 1 | -7/+2 |
| | |||||
* | factor argument to catch an alert mismatch into a helper function | tb | 2021-04-14 | 1 | -7/+8 |
| | |||||
* | enable test-tlsfuzzer-invalid-compression-methods.py | tb | 2021-04-13 | 1 | -5/+10 |
| | |||||
* | enable test-large-hello.py as a slow test | tb | 2021-04-13 | 1 | -3/+2 |
| | |||||
* | with new defaults, test-fuzzed-plaintext.py is no longer slow | tb | 2021-04-13 | 1 | -3/+2 |
| | |||||
* | move a few tests to the unsupported group and fix two comments | tb | 2021-04-13 | 1 | -15/+15 |
| | |||||
* | annotate test-ecdhe-rsa-key-exchange-with-bad-messages.py with expected | tb | 2021-04-13 | 1 | -2/+3 |
| | | | | alerts and where to add them. | ||||
* | Enable test-cve-2016-6309.py | tb | 2021-04-08 | 1 | -3/+2 |
| | |||||
* | Use ERR_print_error_fp() to avoid leaking a BIO in fatal() | tb | 2021-04-07 | 1 | -2/+2 |
| | |||||
* | use errx() instead of err() | tb | 2021-04-06 | 1 | -8/+8 |
| | |||||
* | spaces -> tabs | tb | 2021-04-06 | 1 | -5/+5 |
| | |||||
* | minor style tweaks | tb | 2021-04-06 | 1 | -5/+6 |
| | |||||
* | Add missing error check for AES_unwrap_key(). | tb | 2021-04-04 | 1 | -1/+3 |
| | |||||
* | Fix two copy paste errors in error messages | tb | 2021-04-04 | 1 | -3/+3 |
| | |||||
* | Add tests for DTLSv1_2{,_client,_server}_method() | tb | 2021-04-04 | 1 | -1/+20 |
| | |||||
* | Use correct type for tmp in test_write_bytes() | tb | 2021-04-04 | 1 | -2/+2 |
| | |||||
* | Explicitly NULL pointers to avoid a double free. | tb | 2021-04-04 | 1 | -1/+3 |
| | |||||
* | Don't leak key and dh in the error path. | tb | 2021-04-04 | 1 | -4/+7 |
| | |||||
* | Clean up client and server tls{,_config} contexts in tls_test(). | tb | 2021-04-04 | 1 | -2/+11 |
| | | | | Leaks reported by Ilya Shipitsin. | ||||
* | Run the CMAC tests through EVP_PKEY_new_CMAC_key(). | tb | 2021-04-03 | 1 | -10/+22 |
| | |||||
* | Two cases of BRE involving counts and backrefs that go wrong and | otto | 2021-04-02 | 1 | -1/+16 |
| | | | | | similar that have no isssues. Reported by Michael Paoli. Failing cases commented out for now. | ||||
* | Remove workaround for missing d2i_DSAPrivateKey_fp prototype | tb | 2021-03-31 | 1 | -5/+1 |
| | |||||
* | Add regress coverage for TLSv1.2 record number increment. | jsing | 2021-03-29 | 1 | -8/+151 |
| | |||||
* | The failure mode of test-tls13-version-negotiation.py has changed. | tb | 2021-03-28 | 1 | -4/+2 |
| | | | | Update comment. | ||||
* | Enable test-sig-algs-renegotiation-resumption.py. | tb | 2021-03-27 | 1 | -5/+6 |
| | | | | | | | This test covers various scenarios with renegotiation and session resumption. In particular it crashes the OpenSSL 1.1.1j server due to the sigalg NULL deref fixed this week. We need --sig-algs-drop-ok since we do not currently implement signature_algorithms_cert. | ||||
* | Handle dynamic definition of SIGSTKSZ as of glibc 2.34 on Linux. | bcook | 2021-03-27 | 1 | -7/+24 |
| | | | | ok bluhm@, inoguchi@, tb@, deraadt@ | ||||
* | Add test-sig-algs-renegotiation-resumption.py | tb | 2021-03-26 | 1 | -1/+5 |
| | | | | This test currently fails but may soon be fixed. | ||||
* | The server only sends a cookie during a HRR, not a SH | tb | 2021-03-24 | 1 | -4/+4 |
| | |||||
* | Update regress for new_cipher rename. | jsing | 2021-03-24 | 2 | -6/+6 |
| | |||||
* | Don't leak ca in test_cms_sign_verify(). | tb | 2021-03-22 | 1 | -1/+2 |
| | | | | Reported by Ilya Shipitsin | ||||
* | Plug a few memory leaks reported by Ilya Shipitsin | tb | 2021-03-22 | 1 | -9/+7 |
| | |||||
* | Revise regress to match handshake struct changes. | jsing | 2021-03-21 | 1 | -18/+18 |
| |