More reports
[openssl.git] / STATUS
1
2   OpenSSL STATUS                           Last modified at
3   ______________                           $Date: 2000/09/21 20:09:16 $
4
5   DEVELOPMENT STATE
6
7     o  OpenSSL 0.9.6:  Under development (in release cycle)...
8                        Proposed release date September 24, 2000
9                        0.9.6-beta1 is available:
10                         OpenBSD-x86 2.7                 - failed
11                                 ftime not supported [FIXED]
12                         hpux-parisc-cc 10.20            - passed
13                         hpux-parisc-gcc 10.20           - passed
14                         hpux-parisc-gcc 11.00           - passed
15                         hpux-gcc                        - passed
16                         hpux-brokengcc                  - failed
17                                 BN_sqr fails in test
18                         linux-elf                       - passed
19                         linux-sparcv7                   - passed
20                         linux-ppc                       - passed
21                         Solaris [engine]                - failed
22                                 speed cswift gives odd errors [FIXED]
23                         solaris-sparcv8-gcc             - passed
24                         solaris-sparcv9-gcc             - passed
25                         solaris-sparcv9-cc              - passed
26                         solaris64-sparcv9-cc            - passed
27                         sco5-gcc                        - passed
28                         sco5-cc                         - passed
29                         FreeBSD                         - passed
30                         Win32 VC++                      - failed
31                                 PCURSORINFO not defined unless Win2000 [FIXED]
32                                 RAND_poll() problem on Win2000 [FIXED]
33                                 DSO method always DSO_METHOD_null [FIXED]
34                         CygWin32                        - test failed
35                         MingW32                         - failed
36                                 thelp32.h
37                         aix-gcc (AIX 4.3.2)             - passed
38                         VMS/Alpha                       - failed
39                                 Some things were missing [FIXED]
40                        0.9.6-beta2 is available:
41                         linux/openbsd (all platforms?)          - mod_exp bug
42                         sunos-gcc                               - passed
43                         aix-gcc                                 - passed
44                         Win32 w/ VC6 or Mingw32                 - failed
45                                 RAND_poll(), a few uninitialised vars [FIXED]
46                                 RAND_poll() should used LoadLibrary instead of
47                                         GetModuleHandle [FIXED]
48                                 Major compilation problem with VC6 on NT.
49                                         [FIXED]
50                                 Mingw32 says "175: parse error before `DWORD'"
51                                         [FIXED?]
52                         Win32 w/ CygWin                         - success?
53                         VMS/Alpha 7.1 (CPQ C 5.6-003, TCP/IP 5.0) - success
54                                 Just a small warning in dso_vms.c [FIXED]
55                         VMS/Alpha 7.2-1 (CPQ 5.6-003, TCP/IP 5.0A) - success
56                         VMS/VAX 7.2-1 (CPQ 5.2-003, TCP/IP 5.0) - success
57                         hpux-parisc-cc (HP-UX B.11.00)          - success
58                         hpux-parisc2-cc (11.00)                 - success
59                         hpux64-parisc2-cc (11.00)               - success
60                         hpux-parisc1_1-cc (11.00)               - success
61                         hpux-parisc-cc (10.20 w/ -ldld)         - success
62                         hpux-parisc-gcc (10.20 w/ -ldld)        - success
63                         hpux-parisc-cc [engine] (10.20 w/ -ldld)- success
64                         hpux-parisc-gcc [endine] (10.20 w/ -ldld)- success
65                                 All hpux 10.20 targets succeeded provided -ldl
66                                         has been changed to -ldld.
67                         solaris-sparcv9-gcc (2.6/ultra5)        - success
68                         [ solaris-sparcv9-cc (SunOS 5.7 SC3.0)  - failed      ]
69                         [       Complaints about a number of -x parameters to ]
70                         [               the compiler and failed to compile an ]
71                         [               assembler file.  Maybe a too old      ]
72                         [               compiler? (Yes, apparently:)          ]
73                         solaris-sparcv9-cc (SunOS 5.6 SC4.2)    - success
74                         FreeBSD (2.2.5-RELEASE)                 - success
75                         alpha-cc [engine] (OSF1 5.0A)           - success
76                         irix-mips3-cc [engine] (Irix 6.2)       - success
77                                 One has to do the same as for OpenBSD in
78                                         speed.c [FIXED]
79                         aix-cc (3.2.5, cc 1.3.0.44)             - success
80                         aix-gcc (3.2.5, gcc 2.8.1)              - success
81                                 Both first failed to compiled due to ftime().
82                                         [FIXED]
83                         alpha-cc (V4.0E)                        - success
84                         alpha-gcc (V4.0E, gcc 2.8.1)            - success
85                         ultrix-cc (V4.5)                        - success
86                         ultrix-gcc (V4.5, gcc 2.8.1)            - success
87                        0.9.6-beta3 is available:
88                         aix-cc (4.3)                            - success
89                         aix-cc [engine] (4.3)                   - success
90                         linux-elf (RedHat 5.2, gcc 2.7.2.3)     - success
91                         linux-elf (RedHat 6.2)                  - success
92                         linux-elf [engine] (RedHat 6.2)         - success
93                         solaris-sparcv9-gcc (5.7, gcc 2.95.2)   - success
94                         solaris-sparcv9-gcc (5.6, gcc 2.95.2)   - success
95                         solaris-sparcv9-cc (5.6, SunWS C 4.2)   - success
96                         solaris-sparcv9-cc [engine] (5.6, SunWS C 4.2)- success
97                         VC-WIN32 (NT4 SP6, VC6 SP2)             - success
98                         VC-WIN32 (NT4 SP6, Cygwin)              - success
99                                 The files used for testing must have CR/LF
100                                         as line endings.
101                         VC-WIN32 (NT4 SP6, Mingw32)             - failed
102                                 mingw32a.mak contains a few lines that
103                                         generate an error.
104                         VC-NT static libs (NT4 SP6, VC6 SP4)    - failed
105                                 Complains about unresolved external symbol
106                                         __imp__RegQueryValueEx.  This only
107                                         happens when building the static
108                                         libraries.  Tests pass as soon as
109                                         you make sure advapi32.lib gets
110                                         linked in. [FIXED]
111                         VC-NT dynamic libs (NT4 SP6, VC6 SP4)   - success
112                         VC-WIN32 (W2K Pro SP1, VC6 SP3, PSDK Jul2000)- success
113                         hpux-parisc-gcc (B.10.20, gcc 2.95.2)   - success
114                         hpux-parisc-cc (B.10.20, cc A.10.32.30) - success
115                         hpux-parisc-gcc [engine] (B.10.20, gcc 2.95.2)- success
116                         hpux-parisc-cc [engine] (B.10.20, cc A.10.32.30)- success
117                         hpux-parisc2-cc (B.11.11)               - success
118                         hpux64-parisc2-cc (B.11.11)             - success
119                                 Kevin Steves also mentions that "All the new
120                                 targets look good on my end with hp-ux 11.0."
121                         FreeBSD (2.2.5)                         - failed
122                                 Only having USE_TOD made speed.c issue an
123                                         error. [FIXED]
124                         FreeBSD-alpha (4.1, gcc 2.95.2)         - success
125                                 The USE_TOD fix needed to be applied.
126                                 There were warnings about -O3 triggering
127                                         known optimizer bugs on that
128                                         platform.
129                         OpenBSD-x86 (2.7, gcc 2.95.2)           - success
130                         alpha-cc (OSF1 V4.0)                    - success
131                         solaris-x86-gcc (5.8, gcc 2.95.2)       - success
132     o  OpenSSL 0.9.5a: Released on April     1st, 2000
133     o  OpenSSL 0.9.5:  Released on February 28th, 2000
134     o  OpenSSL 0.9.4:  Released on August   09th, 1999
135     o  OpenSSL 0.9.3a: Released on May      29th, 1999
136     o  OpenSSL 0.9.3:  Released on May      25th, 1999
137     o  OpenSSL 0.9.2b: Released on March    22th, 1999
138     o  OpenSSL 0.9.1c: Released on December 23th, 1998
139
140   RELEASE SHOWSTOPPERS
141
142   AVAILABLE PATCHES
143
144     o CA.pl patch (Damien Miller)
145
146   IN PROGRESS
147
148     o Steve is currently working on (in no particular order):
149         ASN1 code redesign, butchery, replacement.
150         EVP cipher enhancement.
151         Proper (or at least usable) certificate chain verification.
152         Private key, certificate and CRL API and implementation.
153         Developing and bugfixing PKCS#7 (S/MIME code).
154         Various X509 issues: character sets, certificate request extensions.
155     o Geoff and Richard are currently working on:
156         ENGINE (the new code that gives hardware support among others).
157     o Richard is currently working on:
158         UTIL (a new set of library functions to support some higher level
159               functionality that is currently missing).
160         Dynamic thread-lock support.
161         Shared library support for VMS.
162
163   NEEDS PATCH
164
165     o  non-blocking socket on AIX
166     o  $(PERL) in */Makefile.ssl
167     o  "Sign the certificate?" - "n" creates empty certificate file
168
169   OPEN ISSUES
170
171     o internal_verify doesn't know about X509.v3 (basicConstraints
172       CA flag ...)
173
174     o  The Makefile hierarchy and build mechanism is still not a round thing:
175
176        1. The config vs. Configure scripts
177           It's the same nasty situation as for Apache with APACI vs.
178           src/Configure. It confuses.
179           Suggestion: Merge Configure and config into a single configure
180                       script with a Autoconf style interface ;-) and remove
181                       Configure and config. Or even let us use GNU Autoconf
182                       itself. Then we can avoid a lot of those platform checks
183                       which are currently in Configure.
184
185     o  Support for Shared Libraries has to be added at least
186        for the major Unix platforms. The details we can rip from the stuff
187        Ralf has done for the Apache src/Configure script. Ben wants the
188        solution to be really simple.
189
190        Status: Ralf will look how we can easily incorporate the
191                compiler PIC and linker DSO flags from Apache
192                into the OpenSSL Configure script.
193
194                Ulf: +1 for using GNU autoconf and libtool (but not automake,
195                     which apparently is not flexible enough to generate
196                     libcrypto)
197
198
199     o  The perl/ stuff needs a major overhaul. Currently it's
200        totally obsolete. Either we clean it up and enhance it to be up-to-date
201        with the C code or we also could replace it with the really nice
202        Net::SSLeay package we can find under
203        http://www.neuronio.pt/SSLeay.pm.html.  Ralf uses this package for a
204        longer time and it works fine and is a nice Perl module. Best would be
205        to convince the author to work for the OpenSSL project and create a
206        Net::OpenSSL or Crypt::OpenSSL package out of it and maintains it for
207        us.
208
209        Status: Ralf thinks we should both contact the author of Net::SSLeay
210                and look how much effort it is to bring Eric's perl/ stuff up
211                to date.
212                Paul +1
213
214   WISHES
215
216     o