openssl.git
13 years agoImplement Supported Elliptic Curves Extension.
Bodo Möller [Thu, 30 Mar 2006 02:44:56 +0000 (02:44 +0000)]
Implement Supported Elliptic Curves Extension.

Submitted by: Douglas Stebila

13 years agoChange default curve (for compatibility with a
Bodo Möller [Thu, 30 Mar 2006 02:41:30 +0000 (02:41 +0000)]
Change default curve (for compatibility with a
soon-to-be-widely-deployed implementation that doesn't support the
previous default)

Submitted by: Douglas Stebila

13 years agoImplement cipher-suite selection logic given Supported Point Formats Extension.
Bodo Möller [Thu, 30 Mar 2006 02:35:09 +0000 (02:35 +0000)]
Implement cipher-suite selection logic given Supported Point Formats Extension.

Submitted by: Douglas Stebila

13 years agoFix typo.
Dr. Stephen Henson [Wed, 29 Mar 2006 15:58:55 +0000 (15:58 +0000)]
Fix typo.

13 years agoAdd some GOST OIDs.
Dr. Stephen Henson [Wed, 29 Mar 2006 13:02:21 +0000 (13:02 +0000)]
Add some GOST OIDs.

13 years agoAdd missing function declaration.
Dr. Stephen Henson [Wed, 29 Mar 2006 12:18:26 +0000 (12:18 +0000)]
Add missing function declaration.

13 years agoFix bug where freed OIDs could be accessed in EVP_cleanup() by
Dr. Stephen Henson [Tue, 28 Mar 2006 17:23:48 +0000 (17:23 +0000)]
Fix bug where freed OIDs could be accessed in EVP_cleanup() by
defering freeing in OBJ_cleanup().

13 years agoTypo.
Dr. Stephen Henson [Tue, 28 Mar 2006 14:48:42 +0000 (14:48 +0000)]
Typo.

13 years agoNew utility pkeyparam. Enhance and bugfix algorithm specific parameter
Dr. Stephen Henson [Tue, 28 Mar 2006 14:35:32 +0000 (14:35 +0000)]
New utility pkeyparam. Enhance and bugfix algorithm specific parameter
functions to support it.

13 years agoNew general public key utility 'pkey'.
Dr. Stephen Henson [Tue, 28 Mar 2006 12:34:45 +0000 (12:34 +0000)]
New general public key utility 'pkey'.

13 years agoSmall bug. apps/CA.sh and apps/CA.com look at SSLEAY_CONFIG, not
Richard Levitte [Tue, 28 Mar 2006 10:26:12 +0000 (10:26 +0000)]
Small bug.  apps/CA.sh and apps/CA.com look at SSLEAY_CONFIG, not
OPENSSL_CONF.

13 years agoSince we're moving between directories, let's get an absolute path to
Richard Levitte [Mon, 27 Mar 2006 14:39:06 +0000 (14:39 +0000)]
Since we're moving between directories, let's get an absolute path to
openssl.exe.

13 years agoSimplify ASN.1 for point format list
Bodo Möller [Sun, 26 Mar 2006 10:53:52 +0000 (10:53 +0000)]
Simplify ASN.1 for point format list

Submitted by: Douglas Stebila

13 years agoOnly try to remove the tsa.dir subdirectory if it actually exists.
Richard Levitte [Sat, 25 Mar 2006 10:24:22 +0000 (10:24 +0000)]
Only try to remove the tsa.dir subdirectory if it actually exists.

13 years agoInitial support for generalized public key parameters.
Dr. Stephen Henson [Fri, 24 Mar 2006 13:46:58 +0000 (13:46 +0000)]
Initial support for generalized public key parameters.

13 years agoAdd support for legacy PEM format private keys in EVP_PKEY_ASN1_METHOD.
Dr. Stephen Henson [Thu, 23 Mar 2006 18:02:23 +0000 (18:02 +0000)]
Add support for legacy PEM format private keys in EVP_PKEY_ASN1_METHOD.

13 years agoTypo.
Dr. Stephen Henson [Thu, 23 Mar 2006 14:08:33 +0000 (14:08 +0000)]
Typo.

13 years agoFix bug in DSA, EC methods.
Dr. Stephen Henson [Thu, 23 Mar 2006 14:04:39 +0000 (14:04 +0000)]
Fix bug in DSA, EC methods.

13 years agoAdd information and pem strings. Update dependencies.
Dr. Stephen Henson [Thu, 23 Mar 2006 11:54:51 +0000 (11:54 +0000)]
Add information and pem strings. Update dependencies.

13 years agoMake EVP_PKEY_ASN1_METHOD opaque. Add application level functions to
Dr. Stephen Henson [Wed, 22 Mar 2006 17:59:49 +0000 (17:59 +0000)]
Make EVP_PKEY_ASN1_METHOD opaque. Add application level functions to
initialize it. Initial support for application added public key ASN1.

13 years agoKeep up with the changes in the Unix build system.
Richard Levitte [Wed, 22 Mar 2006 14:31:03 +0000 (14:31 +0000)]
Keep up with the changes in the Unix build system.

13 years agoMove algorithm specific print code from crypto/asn1/t_pkey.c to separate
Dr. Stephen Henson [Wed, 22 Mar 2006 13:34:19 +0000 (13:34 +0000)]
Move algorithm specific print code from crypto/asn1/t_pkey.c to separate
*_prn.c files in each algorithm directory.

13 years agoGather printing routines into EVP_PKEY_ASN1_METHOD.
Dr. Stephen Henson [Wed, 22 Mar 2006 13:09:35 +0000 (13:09 +0000)]
Gather printing routines into EVP_PKEY_ASN1_METHOD.

13 years agoVMS doesn't support includes of paths very well.
Richard Levitte [Wed, 22 Mar 2006 11:26:57 +0000 (11:26 +0000)]
VMS doesn't support includes of paths very well.

13 years agoSynchronise with recent changes
Richard Levitte [Tue, 21 Mar 2006 06:22:36 +0000 (06:22 +0000)]
Synchronise with recent changes

13 years agoDH EVP_PKEY_ASN1_METHOD, doesn't do much (yet?).
Dr. Stephen Henson [Mon, 20 Mar 2006 18:37:40 +0000 (18:37 +0000)]
DH EVP_PKEY_ASN1_METHOD, doesn't do much (yet?).

13 years agoTransfer parameter handling and key comparison to algorithm methods.
Dr. Stephen Henson [Mon, 20 Mar 2006 17:56:05 +0000 (17:56 +0000)]
Transfer parameter handling and key comparison to algorithm methods.

13 years agoInitial support for pluggable public key ASN1 support. Process most public
Dr. Stephen Henson [Mon, 20 Mar 2006 12:22:24 +0000 (12:22 +0000)]
Initial support for pluggable public key ASN1 support. Process most public
key ASN1 handling through a single EVP_PKEY_ASN1_METHOD structure and move
the spaghetti algorithm specific code to a single ASN1 module for each
algorithm.

13 years agoStop compiler warnings.
Dr. Stephen Henson [Mon, 20 Mar 2006 11:44:34 +0000 (11:44 +0000)]
Stop compiler warnings.

13 years agofix last commit: return NULL is TS_RESP_CTX_set_status_info_cond() failed
Nils Larsch [Sun, 19 Mar 2006 21:09:48 +0000 (21:09 +0000)]
fix last commit: return NULL is TS_RESP_CTX_set_status_info_cond() failed

13 years agoensure the pointer is valid before using it
Nils Larsch [Sat, 18 Mar 2006 14:27:41 +0000 (14:27 +0000)]
ensure the pointer is valid before using it

13 years agocheck if con != NULL before using it
Nils Larsch [Sat, 18 Mar 2006 14:24:02 +0000 (14:24 +0000)]
check if con != NULL before using it

13 years agoremove unnecessary code
Nils Larsch [Sat, 18 Mar 2006 14:22:20 +0000 (14:22 +0000)]
remove unnecessary code

13 years agoTypo...
Richard Levitte [Sat, 18 Mar 2006 10:36:15 +0000 (10:36 +0000)]
Typo...

13 years ago*** empty log message ***
Ulf Möller [Fri, 17 Mar 2006 19:29:35 +0000 (19:29 +0000)]
*** empty log message ***

13 years agoClarification for CPU specific config options.
Ulf Möller [Fri, 17 Mar 2006 19:22:35 +0000 (19:22 +0000)]
Clarification for CPU specific config options.

13 years agofix for OPENSSL_NO_EC
Nils Larsch [Wed, 15 Mar 2006 19:17:56 +0000 (19:17 +0000)]
fix for OPENSSL_NO_EC

PR: 1293

13 years agofix problems found by coverity: remove useless code
Nils Larsch [Wed, 15 Mar 2006 17:45:43 +0000 (17:45 +0000)]
fix problems found by coverity: remove useless code

13 years agotlsext_ecpointformatlist_length is unsigned, so check if it's less
Richard Levitte [Wed, 15 Mar 2006 09:57:16 +0000 (09:57 +0000)]
tlsext_ecpointformatlist_length is unsigned, so check if it's less
than zero will only result in pissing of some compilers...

13 years agocreate BN_CTX object
Nils Larsch [Wed, 15 Mar 2006 08:37:35 +0000 (08:37 +0000)]
create BN_CTX object

13 years agofix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()
Nils Larsch [Tue, 14 Mar 2006 22:48:41 +0000 (22:48 +0000)]
fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()

13 years agofix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()
Nils Larsch [Mon, 13 Mar 2006 23:14:57 +0000 (23:14 +0000)]
fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()

13 years agosigned vs. unsigned
Nils Larsch [Mon, 13 Mar 2006 22:07:05 +0000 (22:07 +0000)]
signed vs. unsigned

13 years agoOh, now I noticed Bodo's change that made tlsext_ecpointformatlist
Richard Levitte [Mon, 13 Mar 2006 12:37:19 +0000 (12:37 +0000)]
Oh, now I noticed Bodo's change that made tlsext_ecpointformatlist
unsigned...

13 years agoResolve signed vs. unsigned issues
Richard Levitte [Mon, 13 Mar 2006 12:32:51 +0000 (12:32 +0000)]
Resolve signed vs. unsigned issues

13 years agofix sign problems
Bodo Möller [Mon, 13 Mar 2006 09:55:06 +0000 (09:55 +0000)]
fix sign problems

13 years agoremove unused variables
Nils Larsch [Mon, 13 Mar 2006 07:21:39 +0000 (07:21 +0000)]
remove unused variables

13 years agoudpate Supported Point Formats Extension code
Bodo Möller [Mon, 13 Mar 2006 01:24:38 +0000 (01:24 +0000)]
udpate Supported Point Formats Extension code

Submitted by: Douglas Stebila

13 years agofix comment
Nils Larsch [Sun, 12 Mar 2006 23:00:32 +0000 (23:00 +0000)]
fix comment

Submitted by: Peter Sylvester

13 years agouse BIO_snprintf() instead of snprintf + use BIO_FP_TEXT for text output
Nils Larsch [Sun, 12 Mar 2006 22:16:57 +0000 (22:16 +0000)]
use BIO_snprintf() instead of snprintf + use BIO_FP_TEXT for text output

Submitted by: Gisle Vanem

13 years agonote that SSL_library_init() is not reentrant
Nils Larsch [Sun, 12 Mar 2006 00:37:55 +0000 (00:37 +0000)]
note that SSL_library_init() is not reentrant

13 years agoImplement the Supported Point Formats Extension for ECC ciphersuites
Bodo Möller [Sat, 11 Mar 2006 23:46:37 +0000 (23:46 +0000)]
Implement the Supported Point Formats Extension for ECC ciphersuites

Submitted by: Douglas Stebila

13 years agoclarification
Bodo Möller [Sat, 11 Mar 2006 22:10:34 +0000 (22:10 +0000)]
clarification

13 years agofix signed vs. unsigned warning
Nils Larsch [Sat, 11 Mar 2006 12:18:11 +0000 (12:18 +0000)]
fix signed vs. unsigned warning

13 years agofix "missing initializer" warning
Nils Larsch [Sat, 11 Mar 2006 11:58:47 +0000 (11:58 +0000)]
fix "missing initializer" warning

13 years agofix signed vs. unsigned warning
Nils Larsch [Sat, 11 Mar 2006 11:54:27 +0000 (11:54 +0000)]
fix signed vs. unsigned warning

13 years agomake update
Nils Larsch [Fri, 10 Mar 2006 23:08:31 +0000 (23:08 +0000)]
make update

13 years agoadd initial support for RFC 4279 PSK SSL ciphersuites
Nils Larsch [Fri, 10 Mar 2006 23:06:27 +0000 (23:06 +0000)]
add initial support for RFC 4279 PSK SSL ciphersuites

PR: 1191
Submitted by: Mika Kousa and Pasi Eronen of Nokia Corporation
Reviewed by: Nils Larsch

13 years agoRemember to *build* WP_TEST on VMS, as well :-)
Richard Levitte [Wed, 8 Mar 2006 10:45:23 +0000 (10:45 +0000)]
Remember to *build* WP_TEST on VMS, as well :-)

13 years agofix function name in error message
Nils Larsch [Tue, 7 Mar 2006 10:22:45 +0000 (10:22 +0000)]
fix function name in error message

13 years agounused function
Ulf Möller [Mon, 6 Mar 2006 17:58:25 +0000 (17:58 +0000)]
unused function

13 years agoThe actual whirlpool test was missing on VMS...
Richard Levitte [Mon, 6 Mar 2006 12:09:34 +0000 (12:09 +0000)]
The actual whirlpool test was missing on VMS...

13 years agoconstify some print and ts functions
Nils Larsch [Sun, 5 Mar 2006 20:19:05 +0000 (20:19 +0000)]
constify some print and ts functions

13 years agoTypo.
Dr. Stephen Henson [Sun, 5 Mar 2006 01:19:48 +0000 (01:19 +0000)]
Typo.

13 years agono need to cast away the const
Nils Larsch [Sat, 4 Mar 2006 13:55:55 +0000 (13:55 +0000)]
no need to cast away the const

13 years agomake some parameters const
Nils Larsch [Sat, 4 Mar 2006 13:55:02 +0000 (13:55 +0000)]
make some parameters const

13 years agoMake shorter TS symbols for OpenVMS.
Richard Levitte [Thu, 2 Mar 2006 13:55:40 +0000 (13:55 +0000)]
Make shorter TS symbols for OpenVMS.
Don't convert a function pointer to a void*, ISO C doesn't like that.

13 years agoForgot the TSA application...
Richard Levitte [Thu, 2 Mar 2006 13:28:52 +0000 (13:28 +0000)]
Forgot the TSA application...

13 years agoCheck EVP_DigestInit_ex() return value in EVP_BytesToKey().
Dr. Stephen Henson [Wed, 1 Mar 2006 21:17:13 +0000 (21:17 +0000)]
Check EVP_DigestInit_ex() return value in EVP_BytesToKey().

13 years agoforce C locale when using [a-z] in sed expressions
Nils Larsch [Wed, 1 Mar 2006 19:51:37 +0000 (19:51 +0000)]
force C locale when using [a-z] in sed expressions

PR: 1283
Submitted by: Mike Frysinger

13 years agofix "#ifndef HZ" statement
Nils Larsch [Tue, 28 Feb 2006 19:52:15 +0000 (19:52 +0000)]
fix "#ifndef HZ" statement

PR: 1287

13 years agoTS bugfixes: Do not hardcode message digest algorithms; fix ASN1 decoding.
Ulf Möller [Sun, 26 Feb 2006 23:34:53 +0000 (23:34 +0000)]
TS bugfixes: Do not hardcode message digest algorithms; fix ASN1 decoding.

Submitted by: Zoltan Glozik <zglozik@opentsa.org>

13 years agoSynchronise with openss.cnf
Richard Levitte [Sun, 26 Feb 2006 10:48:40 +0000 (10:48 +0000)]
Synchronise with openss.cnf

13 years agoAdd a TSA test. testtsa.com is a manual sh to dcl translation of
Richard Levitte [Sun, 26 Feb 2006 10:47:57 +0000 (10:47 +0000)]
Add a TSA test.  testtsa.com is a manual sh to dcl translation of
testtsa.

13 years agoAdd TS to the VMS build.
Richard Levitte [Sun, 26 Feb 2006 10:46:39 +0000 (10:46 +0000)]
Add TS to the VMS build.

13 years agoBreak out deltree in its' own command procedure.
Richard Levitte [Sun, 26 Feb 2006 10:44:57 +0000 (10:44 +0000)]
Break out deltree in its' own command procedure.

13 years agofix no-dh configure option; patch supplied by Peter Meerwald
Nils Larsch [Fri, 24 Feb 2006 17:58:43 +0000 (17:58 +0000)]
fix no-dh configure option; patch supplied by Peter Meerwald

13 years agoPrint out <INVALID> if an OID value is invalid.
Dr. Stephen Henson [Tue, 21 Feb 2006 01:00:08 +0000 (01:00 +0000)]
Print out <INVALID> if an OID value is invalid.

13 years agoTolerate a SEQUENCE in DN components.
Dr. Stephen Henson [Sun, 19 Feb 2006 13:44:47 +0000 (13:44 +0000)]
Tolerate a SEQUENCE in DN components.

13 years agoignore
Ulf Möller [Thu, 16 Feb 2006 20:43:04 +0000 (20:43 +0000)]
ignore

13 years agomessage style
Ulf Möller [Thu, 16 Feb 2006 20:33:47 +0000 (20:33 +0000)]
message style

13 years agooops
Ulf Möller [Thu, 16 Feb 2006 20:30:58 +0000 (20:30 +0000)]
oops

13 years agowrap shlib for testtsa
Ulf Möller [Thu, 16 Feb 2006 20:20:24 +0000 (20:20 +0000)]
wrap shlib for testtsa
Submitted by: David Somers <dsomers@omz13.com>

13 years agomake some internal functions static; patch supplied by Kurt Roeckx
Nils Larsch [Wed, 15 Feb 2006 20:20:20 +0000 (20:20 +0000)]
make some internal functions static; patch supplied by Kurt Roeckx

13 years agofix typos
Nils Larsch [Wed, 15 Feb 2006 19:42:22 +0000 (19:42 +0000)]
fix typos

PR: 1280

13 years agoFix from stable branch.
Dr. Stephen Henson [Wed, 15 Feb 2006 15:04:42 +0000 (15:04 +0000)]
Fix from stable branch.

13 years agoFix warnings.
Dr. Stephen Henson [Wed, 15 Feb 2006 14:45:31 +0000 (14:45 +0000)]
Fix warnings.

13 years agoshorter filenames
Ulf Möller [Wed, 15 Feb 2006 00:35:46 +0000 (00:35 +0000)]
shorter filenames

13 years agouse asn1 callbacks for new, free and d2i
Nils Larsch [Tue, 14 Feb 2006 07:55:03 +0000 (07:55 +0000)]
use asn1 callbacks for new, free and d2i

13 years agodon't use the l length modifier for int
Nils Larsch [Mon, 13 Feb 2006 09:50:04 +0000 (09:50 +0000)]
don't use the l length modifier for int

13 years agouse stricter prototypes, fix warnings
Nils Larsch [Mon, 13 Feb 2006 09:46:02 +0000 (09:46 +0000)]
use stricter prototypes, fix warnings

13 years agofix warning: add missing prototype
Nils Larsch [Mon, 13 Feb 2006 09:43:31 +0000 (09:43 +0000)]
fix warning: add missing prototype

13 years agofix warning
Nils Larsch [Mon, 13 Feb 2006 08:45:53 +0000 (08:45 +0000)]
fix warning

13 years agofix typo: pass pre-computed parameters to the underlying signature function; thanks...
Nils Larsch [Mon, 13 Feb 2006 08:16:00 +0000 (08:16 +0000)]
fix typo: pass pre-computed parameters to the underlying signature function; thanks to Lucas Newman

13 years ago*** empty log message ***
Ulf Möller [Sun, 12 Feb 2006 23:36:58 +0000 (23:36 +0000)]
*** empty log message ***

13 years agomake update
Ulf Möller [Sun, 12 Feb 2006 23:21:56 +0000 (23:21 +0000)]
make update

13 years agotime stamp Makefile, test files
Ulf Möller [Sun, 12 Feb 2006 23:19:25 +0000 (23:19 +0000)]
time stamp Makefile, test files
Submitted by: Zoltan Glozik <zglozik@opentsa.org>

13 years agoRFC 3161 compliant time stamp request creation, response generation
Ulf Möller [Sun, 12 Feb 2006 23:11:56 +0000 (23:11 +0000)]
RFC 3161 compliant time stamp request creation, response generation
and response verification.

Submitted by: Zoltan Glozik <zglozik@opentsa.org>
Reviewed by: Ulf Moeller

13 years agoMinor clarification.
Dr. Stephen Henson [Sat, 11 Feb 2006 01:54:19 +0000 (01:54 +0000)]
Minor clarification.

13 years agoAdd FAQ about AKID.
Dr. Stephen Henson [Sat, 11 Feb 2006 00:46:34 +0000 (00:46 +0000)]
Add FAQ about AKID.