Bodo Möller [Wed, 14 Aug 2002 10:49:29 +0000 (10:49 +0000)]
add 'TODO' items
Dr. Stephen Henson [Wed, 14 Aug 2002 00:48:02 +0000 (00:48 +0000)]
Fix typo in OBJ_txt2obj which incorrectly passed the content
length, instead of the encoding length to d2i_ASN1_OBJECT.
This wasn't visible before becuse ASN1_get_object() used
to read past the length of the supplied buffer.
Richard Levitte [Tue, 13 Aug 2002 22:41:18 +0000 (22:41 +0000)]
Some files deserve to be ignored
Richard Levitte [Tue, 13 Aug 2002 12:30:27 +0000 (12:30 +0000)]
Merge in demo engines from 0.9.7-stable.
Richard Levitte [Tue, 13 Aug 2002 11:49:47 +0000 (11:49 +0000)]
Comma forgotten.
Richard Levitte [Tue, 13 Aug 2002 11:47:26 +0000 (11:47 +0000)]
Oh, ec2_smpt.c is #included by ec2_smpl.c!
Richard Levitte [Mon, 12 Aug 2002 21:22:00 +0000 (21:22 +0000)]
Do not include openssl/ripemd.h when the RIPEMD algorithm has been deselected.
PR: 216, point 1
Richard Levitte [Mon, 12 Aug 2002 21:20:25 +0000 (21:20 +0000)]
Do not use the word 'modulus', which is a class template name in VC++ 6.0/SP5.
PR: 216, point 3
Bodo Möller [Mon, 12 Aug 2002 15:18:48 +0000 (15:18 +0000)]
Scripts for testing ECC ciphersuites.
Submitted by: Sun Microsystems Labs
Richard Levitte [Mon, 12 Aug 2002 13:31:57 +0000 (13:31 +0000)]
A few files in the ENGINE and EVP sections forgotten.
Bodo Möller [Mon, 12 Aug 2002 11:21:02 +0000 (11:21 +0000)]
fix previous commit (there's no SSLEAY_VERSION_TEXT)
Bodo Möller [Mon, 12 Aug 2002 08:54:40 +0000 (08:54 +0000)]
remove comment
Submitted by: Douglas Stebila
Bodo Möller [Mon, 12 Aug 2002 08:52:23 +0000 (08:52 +0000)]
remove debug messages
Submitted by: Douglas Stebila
Bodo Möller [Mon, 12 Aug 2002 08:51:30 +0000 (08:51 +0000)]
fix comment
Submitted by: Douglas Stebila
Bodo Möller [Mon, 12 Aug 2002 08:47:41 +0000 (08:47 +0000)]
get rid of EVP_PKEY_ECDSA (now we have EVP_PKEY_EC instead)
Submitted by: Nils Larsch
Bodo Möller [Mon, 12 Aug 2002 08:45:00 +0000 (08:45 +0000)]
add 0.9.6g information
Richard Levitte [Mon, 12 Aug 2002 06:54:54 +0000 (06:54 +0000)]
Update with the status for 0.9.6g.
Richard Levitte [Sun, 11 Aug 2002 21:48:44 +0000 (21:48 +0000)]
In case of shared libraries, we might run one version of the
application with a different version of the library. Detect if there
is a difference of versions, and print both versions in that case.
This might prove to be a good enough debugging tool in case of doubt.
Richard Levitte [Sun, 11 Aug 2002 12:27:28 +0000 (12:27 +0000)]
One more file to compile on VMS as well.
Richard Levitte [Sun, 11 Aug 2002 12:23:08 +0000 (12:23 +0000)]
Remove clashes between symbols that have the same name except for
casing.
Richard Levitte [Sun, 11 Aug 2002 11:50:32 +0000 (11:50 +0000)]
More long symbols to shorten.
Richard Levitte [Sat, 10 Aug 2002 01:36:14 +0000 (01:36 +0000)]
mem* functions are declared in string.h.
Richard Levitte [Sat, 10 Aug 2002 01:35:10 +0000 (01:35 +0000)]
Synchronise tests with Unix.
Richard Levitte [Fri, 9 Aug 2002 22:34:57 +0000 (22:34 +0000)]
A new header.
Richard Levitte [Fri, 9 Aug 2002 22:32:32 +0000 (22:32 +0000)]
Synchronise with Unix.
(I expect the next run will generate lots of errors on VMS :-)).
Richard Levitte [Fri, 9 Aug 2002 22:23:33 +0000 (22:23 +0000)]
More long names to shorten.
Bodo Möller [Fri, 9 Aug 2002 12:17:03 +0000 (12:17 +0000)]
.cvsignore for crypto/ecdh
Bodo Möller [Fri, 9 Aug 2002 12:16:15 +0000 (12:16 +0000)]
make update
Bodo Möller [Fri, 9 Aug 2002 11:58:28 +0000 (11:58 +0000)]
fix warnings
Bodo Möller [Fri, 9 Aug 2002 10:44:44 +0000 (10:44 +0000)]
add field type to text output
don't print seed value as a number (leading zeros must not be removed)
Submitted by: Nils Larsch
Bodo Möller [Fri, 9 Aug 2002 09:39:53 +0000 (09:39 +0000)]
use 0, not NULL
Submitted by: Nils Larsch
Bodo Möller [Fri, 9 Aug 2002 09:39:11 +0000 (09:39 +0000)]
ECDH engine support
Submitted by: Douglas Stebila
Bodo Möller [Fri, 9 Aug 2002 08:56:08 +0000 (08:56 +0000)]
ECC ciphersuite support
Submitted by: Douglas Stebila <douglas.stebila@sun.com>
(Authors: Vipul Gupta and Sumit Gupta, Sun Microsystems Laboratories)
Richard Levitte [Fri, 9 Aug 2002 08:50:30 +0000 (08:50 +0000)]
When we want to give a -f argument to $(MAKE), we'd better make sure the
variable doesn't already contain a -f argument.
PR: 203, part 4
Bodo Möller [Fri, 9 Aug 2002 08:43:04 +0000 (08:43 +0000)]
Add ECDH support.
Additional changes:
- use EC_GROUP_get_degree() in apps/req.c
- add ECDSA and ECDH to apps/speed.c
- adds support for EC curves over binary fields to ECDSA
- new function EC_KEY_up_ref() in crypto/ec/ec_key.c
- reorganize crypto/ecdsa/ecdsatest.c
- add engine support for ECDH
- fix a few bugs in ECDSA engine support
Submitted by: Douglas Stebila <douglas.stebila@sun.com>
Richard Levitte [Fri, 9 Aug 2002 07:32:24 +0000 (07:32 +0000)]
Parse version numbers prefixed with text (egcs does that, even with
-dumpversion).
PR: 203, part 1
Richard Levitte [Thu, 8 Aug 2002 22:55:28 +0000 (22:55 +0000)]
0.9.6f is released
Bodo Möller [Wed, 7 Aug 2002 10:49:54 +0000 (10:49 +0000)]
use a generic EC_KEY structure (EC keys are not ECDSA specific)
Submitted by: Nils Larsch
Bodo Möller [Wed, 7 Aug 2002 07:53:47 +0000 (07:53 +0000)]
avoid SIGSEGV
Submitted by: Nils Larsch, Douglas Stebila
Geoff Thorpe [Mon, 5 Aug 2002 16:27:01 +0000 (16:27 +0000)]
These are updates/fixes to DH/DSA/RAND docs based on the fixes to the RSA
docs. There were a couple of other places (including RSA) where the docs
were not quite synchronised with the API that are now fixed. One or two
still remain to be fixed though ...
Geoff Thorpe [Mon, 5 Aug 2002 02:54:57 +0000 (02:54 +0000)]
typo fix
Geoff Thorpe [Sun, 4 Aug 2002 21:08:36 +0000 (21:08 +0000)]
Various parts of the RSA documentation were inaccurate and out of date and
this fixes those that I'm currently aware of. In particular, the ENGINE
interference in the RSA API has hopefully been clarified. This still needs
to be done for other areas of the API ...
Geoff Thorpe [Sun, 4 Aug 2002 20:57:19 +0000 (20:57 +0000)]
A single monolithic man page for the ENGINE stuff. This is a rough
first-cut but provides better documentation than having nothing on the
ENGINE API.
Geoff Thorpe [Sun, 4 Aug 2002 20:40:23 +0000 (20:40 +0000)]
Fix "make install_docs" (and thus "make install").
Bodo Möller [Sat, 3 Aug 2002 18:49:39 +0000 (18:49 +0000)]
oops -- must use EVP_MD_size, not EVP_MD_block_size
Bodo Möller [Sat, 3 Aug 2002 18:28:34 +0000 (18:28 +0000)]
oops, undo previous change (was just for testing)
Bodo Möller [Sat, 3 Aug 2002 18:27:47 +0000 (18:27 +0000)]
fix bn_expand2
Bodo Möller [Sat, 3 Aug 2002 17:51:29 +0000 (17:51 +0000)]
use bn_wexpand instead of bn_expand2 (the latter is not needed here,
and it does not yet work correctly)
Submitted by: Douglas Stebila
Dr. Stephen Henson [Fri, 2 Aug 2002 18:58:33 +0000 (18:58 +0000)]
Fix typo
Dr. Stephen Henson [Fri, 2 Aug 2002 18:48:55 +0000 (18:48 +0000)]
Fix the ASN1 sanity check: correct header length
calculation and check overflow against LONG_MAX.
Bodo Möller [Fri, 2 Aug 2002 18:26:02 +0000 (18:26 +0000)]
disable Sun divison algorithm by default
Bodo Möller [Fri, 2 Aug 2002 18:23:55 +0000 (18:23 +0000)]
fix bn_expand2
Bodo Möller [Fri, 2 Aug 2002 17:25:05 +0000 (17:25 +0000)]
optical changes
Bodo Möller [Fri, 2 Aug 2002 15:28:31 +0000 (15:28 +0000)]
typo
Bodo Möller [Fri, 2 Aug 2002 15:13:10 +0000 (15:13 +0000)]
remove obsolete part of comment
Bodo Möller [Fri, 2 Aug 2002 15:07:08 +0000 (15:07 +0000)]
remove obsoleted disabled code
Bodo Möller [Fri, 2 Aug 2002 15:02:03 +0000 (15:02 +0000)]
Let BN_rand_range() abort with an error after 100 iterations
without success.
Bodo Möller [Fri, 2 Aug 2002 14:58:09 +0000 (14:58 +0000)]
update
Bodo Möller [Fri, 2 Aug 2002 14:57:53 +0000 (14:57 +0000)]
Change BN_mod_sqrt() so that it verifies that the input value is
really the square of the return value.
Bodo Möller [Fri, 2 Aug 2002 14:49:59 +0000 (14:49 +0000)]
move GF2m tests to the end
Bodo Möller [Fri, 2 Aug 2002 14:28:37 +0000 (14:28 +0000)]
Rename implementations of method functions so that they match
the new method names where _GF... suffixes have been removed.
Revert changes to ..._{get/set}_Jprojective_coordinates_...:
The current implementation for ECC over binary fields does not use
projective coordinates, and if it did, it would not use Jacobian
projective coordinates; so it's OK to use the ..._GFp prefix for all
this.
Add author attributions to some files so that it doesn't look
as if Sun wrote all of this :-)
Bodo Möller [Fri, 2 Aug 2002 13:52:19 +0000 (13:52 +0000)]
typos
Bodo Möller [Fri, 2 Aug 2002 13:50:12 +0000 (13:50 +0000)]
ec2_smpt.c must be listed in LIBSRC
Bodo Möller [Fri, 2 Aug 2002 13:43:26 +0000 (13:43 +0000)]
there is no alternative EC_METHOD for curves over GF(2^m) (yet)
Bodo Möller [Fri, 2 Aug 2002 13:42:24 +0000 (13:42 +0000)]
add support for elliptic curves over binary fields
Submitted by: Duglas Stebila <douglas.stebila@sun.com>,
Sheueling Chang <sheueling.chang@sun.com>
(CHANGES entries by Bodo Moeller)
Bodo Möller [Fri, 2 Aug 2002 13:06:17 +0000 (13:06 +0000)]
extend curve list (additional curves over binary fields)
Submitted by: Sheueling Chang Shantz and Douglas Stebila (Sun Microsystems Laboratories)
Bodo Möller [Fri, 2 Aug 2002 13:03:55 +0000 (13:03 +0000)]
Binary field arithmetic contributed by Sun Microsystems.
The 'OPENSSL_NO_SUN_DIV' default is still subject to change,
so I didn't bother to finish the CHANGES entry yet.
Submitted by: Douglas Stebila <douglas.stebila@sun.com>, Sheueling Chang <sheueling.chang@sun.com>
(CHANGES entry by Bodo Moeller)
Bodo Möller [Fri, 2 Aug 2002 12:28:34 +0000 (12:28 +0000)]
Add more WAP/WTLS elliptic curve OIDs.
Submitted by: Douglas Stebila <douglas.stebila@sun.com>
Bodo Möller [Fri, 2 Aug 2002 12:27:21 +0000 (12:27 +0000)]
New error code ERR_R_DISABLED
Submitted by: Douglas Stebila <douglas.stebila@sun.com>
Bodo Möller [Fri, 2 Aug 2002 11:48:15 +0000 (11:48 +0000)]
get rid of OpenSSLDie
Richard Levitte [Fri, 2 Aug 2002 11:23:12 +0000 (11:23 +0000)]
make update
Richard Levitte [Fri, 2 Aug 2002 11:13:37 +0000 (11:13 +0000)]
Certain flag macros were tested with #if instead if #ifdef...
Richard Levitte [Thu, 1 Aug 2002 21:52:56 +0000 (21:52 +0000)]
We don't need to find out which pod2man to use more than once
Richard Levitte [Thu, 1 Aug 2002 21:34:24 +0000 (21:34 +0000)]
Don't try testing with parallell make, that will just fail.
PR: 175
Richard Levitte [Thu, 1 Aug 2002 20:28:16 +0000 (20:28 +0000)]
Add aix64-cc, and make sure that ar gets proper flags for 64-bit libraries
Richard Levitte [Thu, 1 Aug 2002 19:45:54 +0000 (19:45 +0000)]
make update
Richard Levitte [Thu, 1 Aug 2002 19:32:48 +0000 (19:32 +0000)]
Add the CBC flag for cbc ciphers
Richard Levitte [Thu, 1 Aug 2002 19:30:58 +0000 (19:30 +0000)]
Avoid yet another name clash with libdes, and make the declaration consistent
with the definition.
Richard Levitte [Thu, 1 Aug 2002 16:28:40 +0000 (16:28 +0000)]
Make it possible to load keys from stdin, and restore that
functionality in the programs that had that before.
Part fo PR 164
Richard Levitte [Thu, 1 Aug 2002 14:18:52 +0000 (14:18 +0000)]
OCSP and KRB5 Makefil.ssl should be consistent with all the others
Richard Levitte [Thu, 1 Aug 2002 13:50:08 +0000 (13:50 +0000)]
Linux on s390 really knows about loading dynamically.
PR: 183
Richard Levitte [Thu, 1 Aug 2002 13:39:39 +0000 (13:39 +0000)]
Cut'n'paste error with other reposnder certificates cleared.
PR: 190
Richard Levitte [Thu, 1 Aug 2002 10:08:37 +0000 (10:08 +0000)]
If CRYPTO_realloc() is called with a NULL pointer, have it call
OPENSSL_malloc().
PR: 187
Richard Levitte [Wed, 31 Jul 2002 14:05:57 +0000 (14:05 +0000)]
If the email address is moved from the subject to the subject alternate name,
the subject in the certificate would differ from the subject in the index file,
which has quite bad concequences.
PR: 180
Richard Levitte [Wed, 31 Jul 2002 13:49:06 +0000 (13:49 +0000)]
Make sure to use $(MAKE) everywhere instead of make.
Part of PR 181
Richard Levitte [Wed, 31 Jul 2002 13:38:32 +0000 (13:38 +0000)]
ln -f -s doesn't always work, so do a rm -f followed by a ln -s.
Part of PR 181
Richard Levitte [Wed, 31 Jul 2002 13:24:26 +0000 (13:24 +0000)]
The version of the shared library should, for now, reflect the version
of OpenSSL.
Part of PR 181.
Lutz Jänicke [Tue, 30 Jul 2002 13:36:31 +0000 (13:36 +0000)]
Typo.
Submitted by: Jeffrey Altman <jaltman@columbia.edu>
Reviewed by:
PR: 169
Lutz Jänicke [Tue, 30 Jul 2002 13:04:04 +0000 (13:04 +0000)]
OpenSSL Security Advisory [30 July 2002]
Changes marked "(CHATS)" were sponsored by the Defense Advanced
Research Projects Agency (DARPA) and Air Force Research Laboratory,
Air Force Materiel Command, USAF, under agreement number
F30602-01-2-0537.
Lutz Jänicke [Tue, 30 Jul 2002 12:44:33 +0000 (12:44 +0000)]
"make update"
Lutz Jänicke [Tue, 30 Jul 2002 11:32:47 +0000 (11:32 +0000)]
0.9.6e and 0.9.7-beta3 are out.
Lutz Jänicke [Mon, 29 Jul 2002 13:31:44 +0000 (13:31 +0000)]
Only use DSA-functions if available.
Submitted by: "Hellan,Kim KHE" <KHE@kmd.dk>
Reviewed by:
PR: 167
Bodo Möller [Mon, 29 Jul 2002 12:35:19 +0000 (12:35 +0000)]
mention SSL_do_handshake()
Bodo Möller [Fri, 26 Jul 2002 08:41:04 +0000 (08:41 +0000)]
Use SEC1 format for EC private keys.
This is not ECDSA specific, so it's now PEM_STRING_ECPRIVATEKEY etc.
Submitted by: Nils Larsch <nlarsch@compuserve.de>
Bodo Möller [Thu, 25 Jul 2002 12:12:39 +0000 (12:12 +0000)]
Move zeroing from bn_expand_internal() to bn_expand2() so that it
happens reliably, even if the BIGNUM is already sufficiently large.
[Note that the bn_expand()/bn_wexpand() macros call bn_expand2() only
if the BIGNUM actually has to grow, so this change does not add any
new overhead as currently bn_expand2() is never called directly.]
Bodo Möller [Thu, 25 Jul 2002 11:19:58 +0000 (11:19 +0000)]
more detailed instructions for export from US
Richard Levitte [Wed, 24 Jul 2002 14:43:00 +0000 (14:43 +0000)]
Don't clobber loop variable.
PR: 159
Richard Levitte [Tue, 23 Jul 2002 13:45:38 +0000 (13:45 +0000)]
Document the recent DJGPP-related changes
Richard Levitte [Tue, 23 Jul 2002 13:31:04 +0000 (13:31 +0000)]
Make dummy tests to make it easier to physically remove unwanted algorithms.
This should complete PR 75
Bodo Möller [Tue, 23 Jul 2002 09:51:57 +0000 (09:51 +0000)]
harmonize options with those for 'ecparam',
remove redudant option '-pub'
Submitted by: Nils Larsch