oweals/openssl.git
18 years agoBeginnings of PSS support.
Dr. Stephen Henson [Mon, 10 Apr 2006 11:48:35 +0000 (11:48 +0000)]
Beginnings of PSS support.

18 years agoSynchronise with the Unix build
Richard Levitte [Mon, 10 Apr 2006 11:39:49 +0000 (11:39 +0000)]
Synchronise with the Unix build

18 years agoChange operation values so they can be used as a mask.
Dr. Stephen Henson [Mon, 10 Apr 2006 11:16:11 +0000 (11:16 +0000)]
Change operation values so they can be used as a mask.

Fix rsa_pkey_method.

18 years agoImplementation of pkey_rsa_verify. Some constification.
Dr. Stephen Henson [Mon, 10 Apr 2006 01:06:17 +0000 (01:06 +0000)]
Implementation of pkey_rsa_verify. Some constification.

18 years agoNew utility function to reverse a buffer, either by copying or in-place.
Dr. Stephen Henson [Mon, 10 Apr 2006 00:11:30 +0000 (00:11 +0000)]
New utility function to reverse a buffer, either by copying or in-place.

18 years agoStore digests as EVP_MD instead of a NID.
Dr. Stephen Henson [Sun, 9 Apr 2006 21:24:48 +0000 (21:24 +0000)]
Store digests as EVP_MD instead of a NID.

Add digest size sanity checks.

18 years agoConstification.
Dr. Stephen Henson [Sun, 9 Apr 2006 20:53:19 +0000 (20:53 +0000)]
Constification.

18 years agoBugfix X9.31 padding.
Dr. Stephen Henson [Sun, 9 Apr 2006 20:44:00 +0000 (20:44 +0000)]
Bugfix X9.31 padding.

18 years agoSupport for digest signing and X931 in rsa_pkey_meth.
Dr. Stephen Henson [Sun, 9 Apr 2006 19:17:25 +0000 (19:17 +0000)]
Support for digest signing and X931 in rsa_pkey_meth.

18 years agoAdd checking to padding ctrl.
Dr. Stephen Henson [Sun, 9 Apr 2006 12:53:55 +0000 (12:53 +0000)]
Add checking to padding ctrl.

18 years agoAdd RSA ctrl for padding mode, add ctrl support in pkeyutl.
Dr. Stephen Henson [Sun, 9 Apr 2006 12:42:09 +0000 (12:42 +0000)]
Add RSA ctrl for padding mode, add ctrl support in pkeyutl.

18 years agoFix typo. Add EVP_PKEY_CTX control function for later use by command line
Dr. Stephen Henson [Sun, 9 Apr 2006 00:34:00 +0000 (00:34 +0000)]
Fix typo. Add EVP_PKEY_CTX control function for later use by command line
utilities.

18 years agoReformat pkeyutl.c, add support for verify operation but nothing actually
Dr. Stephen Henson [Sat, 8 Apr 2006 22:25:47 +0000 (22:25 +0000)]
Reformat pkeyutl.c, add support for verify operation but nothing actually
supports it (yet).

18 years agoUpdate dependencies.
Dr. Stephen Henson [Sat, 8 Apr 2006 13:04:31 +0000 (13:04 +0000)]
Update dependencies.

18 years agoImplement encrypt/decrypt using RSA.
Dr. Stephen Henson [Sat, 8 Apr 2006 13:02:04 +0000 (13:02 +0000)]
Implement encrypt/decrypt using RSA.

18 years agoInitial functions for RSA EVP_PKEY_METHOD.
Dr. Stephen Henson [Sat, 8 Apr 2006 00:15:07 +0000 (00:15 +0000)]
Initial functions for RSA EVP_PKEY_METHOD.

Update dependencies.

18 years agoIf <operatio>_init function is zero interpret as noop.
Dr. Stephen Henson [Fri, 7 Apr 2006 23:11:49 +0000 (23:11 +0000)]
If <operatio>_init function is zero interpret as noop.

18 years agoNew utility 'pkeyutl' a general purpose version of 'rsautl'.
Dr. Stephen Henson [Fri, 7 Apr 2006 19:33:28 +0000 (19:33 +0000)]
New utility 'pkeyutl' a general purpose version of 'rsautl'.

18 years agoInclude EVP_PKEY argument in EVP_PKEY_CTX_new(). This avoids the
Dr. Stephen Henson [Fri, 7 Apr 2006 17:28:56 +0000 (17:28 +0000)]
Include EVP_PKEY argument in EVP_PKEY_CTX_new(). This avoids the
need for a separate EVP_PKEY parameter in the other operation
initialization routines.

18 years agoInitial functions for main EVP_PKEY_METHOD operations.
Dr. Stephen Henson [Fri, 7 Apr 2006 16:42:09 +0000 (16:42 +0000)]
Initial functions for main EVP_PKEY_METHOD operations.
No method implementations yet.

18 years agoUpdated to EVP_PKEY_METHOD code... still doesn't do much.
Dr. Stephen Henson [Thu, 6 Apr 2006 17:32:43 +0000 (17:32 +0000)]
Updated to EVP_PKEY_METHOD code... still doesn't do much.

18 years agoInitial definitions and a few functions for EVP_PKEY_METHOD: an extension
Dr. Stephen Henson [Thu, 6 Apr 2006 13:02:06 +0000 (13:02 +0000)]
Initial definitions and a few functions for EVP_PKEY_METHOD: an extension
of the EVP routines to public key algorithms.

18 years agoRemove ECC extension information from external representation
Bodo Möller [Wed, 5 Apr 2006 17:11:19 +0000 (17:11 +0000)]
Remove ECC extension information from external representation
of the session -- we don't really need it once the handshake
has completed.

18 years agoNew function to add dynamic alias.
Dr. Stephen Henson [Wed, 5 Apr 2006 13:24:19 +0000 (13:24 +0000)]
New function to add dynamic alias.

18 years agoLast arg to EVP_PKEY_assign() should be void *.
Dr. Stephen Henson [Wed, 5 Apr 2006 13:04:02 +0000 (13:04 +0000)]
Last arg to EVP_PKEY_assign() should be void *.

18 years agoRebuild mac table to avoid duplicates.
Dr. Stephen Henson [Wed, 5 Apr 2006 12:09:09 +0000 (12:09 +0000)]
Rebuild mac table to avoid duplicates.

18 years agoTypos in a few OID names.
Dr. Stephen Henson [Wed, 5 Apr 2006 12:06:32 +0000 (12:06 +0000)]
Typos in a few OID names.

18 years agoTypo.
Dr. Stephen Henson [Wed, 5 Apr 2006 12:00:22 +0000 (12:00 +0000)]
Typo.

18 years agoMinor object name edit.
Dr. Stephen Henson [Wed, 5 Apr 2006 11:29:31 +0000 (11:29 +0000)]
Minor object name edit.

18 years agoAdd an explicit load_config() call so any added algorithms are
Dr. Stephen Henson [Tue, 4 Apr 2006 18:47:20 +0000 (18:47 +0000)]
Add an explicit load_config() call so any added algorithms are
visible.

18 years agoFix dynamic public key method lookup.
Dr. Stephen Henson [Tue, 4 Apr 2006 18:32:19 +0000 (18:32 +0000)]
Fix dynamic public key method lookup.

18 years agoNew function to retrieve ASN1 info on public key algorithms. New command
Dr. Stephen Henson [Tue, 4 Apr 2006 18:16:03 +0000 (18:16 +0000)]
New function to retrieve ASN1 info on public key algorithms. New command
line option to print out info.

18 years agoStop warning.
Dr. Stephen Henson [Tue, 4 Apr 2006 18:11:49 +0000 (18:11 +0000)]
Stop warning.

18 years agoUpdate and add last (?) set of GOST OIDs.
Dr. Stephen Henson [Tue, 4 Apr 2006 15:53:21 +0000 (15:53 +0000)]
Update and add last (?) set of GOST OIDs.

18 years agoclarification
Bodo Möller [Mon, 3 Apr 2006 14:11:23 +0000 (14:11 +0000)]
clarification

18 years agocheck length properly
Bodo Möller [Mon, 3 Apr 2006 13:57:56 +0000 (13:57 +0000)]
check length properly

Submitted by: Peter Sylvester

18 years agosimplify: use s2n macro
Bodo Möller [Mon, 3 Apr 2006 13:07:18 +0000 (13:07 +0000)]
simplify: use s2n macro

18 years agoAvoid hard-coded table length where we can use sizeof.
Bodo Möller [Mon, 3 Apr 2006 11:56:30 +0000 (11:56 +0000)]
Avoid hard-coded table length where we can use sizeof.

Submitted by: Peter Sylvester
Reviewed by: Bodo Moeller

18 years agofix memory leak
Bodo Möller [Mon, 3 Apr 2006 11:49:18 +0000 (11:49 +0000)]
fix memory leak

Submitted by: Peter Sylvester

18 years agoChange chop to chomp when reading lines, so CRLF is properly processed on
Richard Levitte [Mon, 3 Apr 2006 09:15:15 +0000 (09:15 +0000)]
Change chop to chomp when reading lines, so CRLF is properly processed on
the operating systems where they are the normal line endings

18 years agoMore GOST OIDs
Dr. Stephen Henson [Sun, 2 Apr 2006 13:22:39 +0000 (13:22 +0000)]
More GOST OIDs

18 years agoAdd GOST parameter set OIDs.
Dr. Stephen Henson [Sun, 2 Apr 2006 03:01:27 +0000 (03:01 +0000)]
Add GOST parameter set OIDs.

18 years agoDon't free up key in priv_decode.
Dr. Stephen Henson [Fri, 31 Mar 2006 18:16:22 +0000 (18:16 +0000)]
Don't free up key in priv_decode.

18 years agoInitialize pval.
Dr. Stephen Henson [Fri, 31 Mar 2006 18:11:54 +0000 (18:11 +0000)]
Initialize pval.

18 years agoIf we declare a function, like d2i_TS_MSG_IMPRINT_bio(), we'd better
Richard Levitte [Fri, 31 Mar 2006 12:25:24 +0000 (12:25 +0000)]
If we declare a function, like d2i_TS_MSG_IMPRINT_bio(), we'd better
*define* it too, or things like shared libraries might be a bit sad.

18 years agoFix gost OIDs.
Dr. Stephen Henson [Fri, 31 Mar 2006 10:57:32 +0000 (10:57 +0000)]
Fix gost OIDs.

18 years agoSynchronise with recent changes
Richard Levitte [Thu, 30 Mar 2006 04:30:45 +0000 (04:30 +0000)]
Synchronise with recent changes

18 years agoThe -config option flag needs to be in the SSLEAY_CONFIG value.
Richard Levitte [Thu, 30 Mar 2006 04:29:38 +0000 (04:29 +0000)]
The -config option flag needs to be in the SSLEAY_CONFIG value.

PR: 1300

18 years agofix for hostname extension
Bodo Möller [Thu, 30 Mar 2006 02:53:30 +0000 (02:53 +0000)]
fix for hostname extension

Submitted by: Kaspar Brand, Peter Sylvester

18 years agoImplement Supported Elliptic Curves Extension.
Bodo Möller [Thu, 30 Mar 2006 02:44:56 +0000 (02:44 +0000)]
Implement Supported Elliptic Curves Extension.

Submitted by: Douglas Stebila

18 years agoChange default curve (for compatibility with a
Bodo Möller [Thu, 30 Mar 2006 02:41:30 +0000 (02:41 +0000)]
Change default curve (for compatibility with a
soon-to-be-widely-deployed implementation that doesn't support the
previous default)

Submitted by: Douglas Stebila

18 years agoImplement cipher-suite selection logic given Supported Point Formats Extension.
Bodo Möller [Thu, 30 Mar 2006 02:35:09 +0000 (02:35 +0000)]
Implement cipher-suite selection logic given Supported Point Formats Extension.

Submitted by: Douglas Stebila

18 years agoFix typo.
Dr. Stephen Henson [Wed, 29 Mar 2006 15:58:55 +0000 (15:58 +0000)]
Fix typo.

18 years agoAdd some GOST OIDs.
Dr. Stephen Henson [Wed, 29 Mar 2006 13:02:21 +0000 (13:02 +0000)]
Add some GOST OIDs.

18 years agoAdd missing function declaration.
Dr. Stephen Henson [Wed, 29 Mar 2006 12:18:26 +0000 (12:18 +0000)]
Add missing function declaration.

18 years agoFix bug where freed OIDs could be accessed in EVP_cleanup() by
Dr. Stephen Henson [Tue, 28 Mar 2006 17:23:48 +0000 (17:23 +0000)]
Fix bug where freed OIDs could be accessed in EVP_cleanup() by
defering freeing in OBJ_cleanup().

18 years agoTypo.
Dr. Stephen Henson [Tue, 28 Mar 2006 14:48:42 +0000 (14:48 +0000)]
Typo.

18 years agoNew utility pkeyparam. Enhance and bugfix algorithm specific parameter
Dr. Stephen Henson [Tue, 28 Mar 2006 14:35:32 +0000 (14:35 +0000)]
New utility pkeyparam. Enhance and bugfix algorithm specific parameter
functions to support it.

18 years agoNew general public key utility 'pkey'.
Dr. Stephen Henson [Tue, 28 Mar 2006 12:34:45 +0000 (12:34 +0000)]
New general public key utility 'pkey'.

18 years agoSmall bug. apps/CA.sh and apps/CA.com look at SSLEAY_CONFIG, not
Richard Levitte [Tue, 28 Mar 2006 10:26:12 +0000 (10:26 +0000)]
Small bug.  apps/CA.sh and apps/CA.com look at SSLEAY_CONFIG, not
OPENSSL_CONF.

18 years agoSince we're moving between directories, let's get an absolute path to
Richard Levitte [Mon, 27 Mar 2006 14:39:06 +0000 (14:39 +0000)]
Since we're moving between directories, let's get an absolute path to
openssl.exe.

18 years agoSimplify ASN.1 for point format list
Bodo Möller [Sun, 26 Mar 2006 10:53:52 +0000 (10:53 +0000)]
Simplify ASN.1 for point format list

Submitted by: Douglas Stebila

18 years agoOnly try to remove the tsa.dir subdirectory if it actually exists.
Richard Levitte [Sat, 25 Mar 2006 10:24:22 +0000 (10:24 +0000)]
Only try to remove the tsa.dir subdirectory if it actually exists.

18 years agoInitial support for generalized public key parameters.
Dr. Stephen Henson [Fri, 24 Mar 2006 13:46:58 +0000 (13:46 +0000)]
Initial support for generalized public key parameters.

18 years agoAdd support for legacy PEM format private keys in EVP_PKEY_ASN1_METHOD.
Dr. Stephen Henson [Thu, 23 Mar 2006 18:02:23 +0000 (18:02 +0000)]
Add support for legacy PEM format private keys in EVP_PKEY_ASN1_METHOD.

18 years agoTypo.
Dr. Stephen Henson [Thu, 23 Mar 2006 14:08:33 +0000 (14:08 +0000)]
Typo.

18 years agoFix bug in DSA, EC methods.
Dr. Stephen Henson [Thu, 23 Mar 2006 14:04:39 +0000 (14:04 +0000)]
Fix bug in DSA, EC methods.

18 years agoAdd information and pem strings. Update dependencies.
Dr. Stephen Henson [Thu, 23 Mar 2006 11:54:51 +0000 (11:54 +0000)]
Add information and pem strings. Update dependencies.

18 years agoMake EVP_PKEY_ASN1_METHOD opaque. Add application level functions to
Dr. Stephen Henson [Wed, 22 Mar 2006 17:59:49 +0000 (17:59 +0000)]
Make EVP_PKEY_ASN1_METHOD opaque. Add application level functions to
initialize it. Initial support for application added public key ASN1.

18 years agoKeep up with the changes in the Unix build system.
Richard Levitte [Wed, 22 Mar 2006 14:31:03 +0000 (14:31 +0000)]
Keep up with the changes in the Unix build system.

18 years agoMove algorithm specific print code from crypto/asn1/t_pkey.c to separate
Dr. Stephen Henson [Wed, 22 Mar 2006 13:34:19 +0000 (13:34 +0000)]
Move algorithm specific print code from crypto/asn1/t_pkey.c to separate
*_prn.c files in each algorithm directory.

18 years agoGather printing routines into EVP_PKEY_ASN1_METHOD.
Dr. Stephen Henson [Wed, 22 Mar 2006 13:09:35 +0000 (13:09 +0000)]
Gather printing routines into EVP_PKEY_ASN1_METHOD.

18 years agoVMS doesn't support includes of paths very well.
Richard Levitte [Wed, 22 Mar 2006 11:26:57 +0000 (11:26 +0000)]
VMS doesn't support includes of paths very well.

18 years agoSynchronise with recent changes
Richard Levitte [Tue, 21 Mar 2006 06:22:36 +0000 (06:22 +0000)]
Synchronise with recent changes

18 years agoDH EVP_PKEY_ASN1_METHOD, doesn't do much (yet?).
Dr. Stephen Henson [Mon, 20 Mar 2006 18:37:40 +0000 (18:37 +0000)]
DH EVP_PKEY_ASN1_METHOD, doesn't do much (yet?).

18 years agoTransfer parameter handling and key comparison to algorithm methods.
Dr. Stephen Henson [Mon, 20 Mar 2006 17:56:05 +0000 (17:56 +0000)]
Transfer parameter handling and key comparison to algorithm methods.

18 years agoInitial support for pluggable public key ASN1 support. Process most public
Dr. Stephen Henson [Mon, 20 Mar 2006 12:22:24 +0000 (12:22 +0000)]
Initial support for pluggable public key ASN1 support. Process most public
key ASN1 handling through a single EVP_PKEY_ASN1_METHOD structure and move
the spaghetti algorithm specific code to a single ASN1 module for each
algorithm.

18 years agoStop compiler warnings.
Dr. Stephen Henson [Mon, 20 Mar 2006 11:44:34 +0000 (11:44 +0000)]
Stop compiler warnings.

18 years agofix last commit: return NULL is TS_RESP_CTX_set_status_info_cond() failed
Nils Larsch [Sun, 19 Mar 2006 21:09:48 +0000 (21:09 +0000)]
fix last commit: return NULL is TS_RESP_CTX_set_status_info_cond() failed

18 years agoensure the pointer is valid before using it
Nils Larsch [Sat, 18 Mar 2006 14:27:41 +0000 (14:27 +0000)]
ensure the pointer is valid before using it

18 years agocheck if con != NULL before using it
Nils Larsch [Sat, 18 Mar 2006 14:24:02 +0000 (14:24 +0000)]
check if con != NULL before using it

18 years agoremove unnecessary code
Nils Larsch [Sat, 18 Mar 2006 14:22:20 +0000 (14:22 +0000)]
remove unnecessary code

18 years agoTypo...
Richard Levitte [Sat, 18 Mar 2006 10:36:15 +0000 (10:36 +0000)]
Typo...

18 years ago*** empty log message ***
Ulf Möller [Fri, 17 Mar 2006 19:29:35 +0000 (19:29 +0000)]
*** empty log message ***

18 years agoClarification for CPU specific config options.
Ulf Möller [Fri, 17 Mar 2006 19:22:35 +0000 (19:22 +0000)]
Clarification for CPU specific config options.

18 years agofix for OPENSSL_NO_EC
Nils Larsch [Wed, 15 Mar 2006 19:17:56 +0000 (19:17 +0000)]
fix for OPENSSL_NO_EC

PR: 1293

18 years agofix problems found by coverity: remove useless code
Nils Larsch [Wed, 15 Mar 2006 17:45:43 +0000 (17:45 +0000)]
fix problems found by coverity: remove useless code

18 years agotlsext_ecpointformatlist_length is unsigned, so check if it's less
Richard Levitte [Wed, 15 Mar 2006 09:57:16 +0000 (09:57 +0000)]
tlsext_ecpointformatlist_length is unsigned, so check if it's less
than zero will only result in pissing of some compilers...

18 years agocreate BN_CTX object
Nils Larsch [Wed, 15 Mar 2006 08:37:35 +0000 (08:37 +0000)]
create BN_CTX object

18 years agofix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()
Nils Larsch [Tue, 14 Mar 2006 22:48:41 +0000 (22:48 +0000)]
fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()

18 years agofix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()
Nils Larsch [Mon, 13 Mar 2006 23:14:57 +0000 (23:14 +0000)]
fix error found by coverity: check if ctx is != NULL before calling BN_CTX_end()

18 years agosigned vs. unsigned
Nils Larsch [Mon, 13 Mar 2006 22:07:05 +0000 (22:07 +0000)]
signed vs. unsigned

18 years agoOh, now I noticed Bodo's change that made tlsext_ecpointformatlist
Richard Levitte [Mon, 13 Mar 2006 12:37:19 +0000 (12:37 +0000)]
Oh, now I noticed Bodo's change that made tlsext_ecpointformatlist
unsigned...

18 years agoResolve signed vs. unsigned issues
Richard Levitte [Mon, 13 Mar 2006 12:32:51 +0000 (12:32 +0000)]
Resolve signed vs. unsigned issues

18 years agofix sign problems
Bodo Möller [Mon, 13 Mar 2006 09:55:06 +0000 (09:55 +0000)]
fix sign problems

18 years agoremove unused variables
Nils Larsch [Mon, 13 Mar 2006 07:21:39 +0000 (07:21 +0000)]
remove unused variables

18 years agoudpate Supported Point Formats Extension code
Bodo Möller [Mon, 13 Mar 2006 01:24:38 +0000 (01:24 +0000)]
udpate Supported Point Formats Extension code

Submitted by: Douglas Stebila

18 years agofix comment
Nils Larsch [Sun, 12 Mar 2006 23:00:32 +0000 (23:00 +0000)]
fix comment

Submitted by: Peter Sylvester

18 years agouse BIO_snprintf() instead of snprintf + use BIO_FP_TEXT for text output
Nils Larsch [Sun, 12 Mar 2006 22:16:57 +0000 (22:16 +0000)]
use BIO_snprintf() instead of snprintf + use BIO_FP_TEXT for text output

Submitted by: Gisle Vanem

18 years agonote that SSL_library_init() is not reentrant
Nils Larsch [Sun, 12 Mar 2006 00:37:55 +0000 (00:37 +0000)]
note that SSL_library_init() is not reentrant