X509_NAME_cmp() now compares PrintableString and emailAddress with a value of type
[openssl.git] / CHANGES
diff --git a/CHANGES b/CHANGES
index a16d78daea2db77fa95ff297366471b7a0f8e753..43565ec0e333641cc389f03f0ea1738a27794bcc 100644 (file)
--- a/CHANGES
+++ b/CHANGES
@@ -1997,6 +1997,11 @@ des-cbc           3624.96k     5258.21k     5530.91k     5624.30k     5628.26k
 
  Changes between 0.9.6g and 0.9.6h  [xx XXX xxxx]
 
+  *) Change X509_NAME_cmp() so it applies the special rules on handling
+     DN values that are of type PrintableString, as well as RDNs of type
+     emailAddress where the value has the type ia5String.
+     [stefank@valicert.com via Richard Levitte]
+
   *) Add a SSL_SESS_CACHE_NO_INTERNAL_STORE flag to take over half
      the job SSL_SESS_CACHE_NO_INTERNAL_LOOKUP was inconsistently
      doing, define a new flag (SSL_SESS_CACHE_NO_INTERNAL) to be