oweals/openssl.git
15 years agoAllow checking of self-signed certifictes if a flag is set.
Dr. Stephen Henson [Fri, 26 Jun 2009 11:28:52 +0000 (11:28 +0000)]
Allow checking of self-signed certifictes if a flag is set.

15 years agoFix from HEAD.
Dr. Stephen Henson [Thu, 25 Jun 2009 17:11:48 +0000 (17:11 +0000)]
Fix from HEAD.

15 years agoPR: 1748
Dr. Stephen Henson [Thu, 25 Jun 2009 11:26:45 +0000 (11:26 +0000)]
PR: 1748

Fix nasty SSL BIO pop bug. Since this changes the behaviour of SSL BIOs and
will break applications that worked around the bug only included in 1.0.0 and
later.

15 years agoDEBUG_BN_CTX doesn't really debug anything (it is essentially verbosity) and
Ben Laurie [Thu, 25 Jun 2009 10:15:06 +0000 (10:15 +0000)]
DEBUG_BN_CTX doesn't really debug anything (it is essentially verbosity) and
has made make test far too noisy.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 24 Jun 2009 13:30:07 +0000 (13:30 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 17 Jun 2009 12:19:35 +0000 (12:19 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 17 Jun 2009 12:05:51 +0000 (12:05 +0000)]
Update from HEAD.

15 years agoCheck t too.
Dr. Stephen Henson [Wed, 17 Jun 2009 11:47:54 +0000 (11:47 +0000)]
Check t too.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 17 Jun 2009 11:38:26 +0000 (11:38 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 17 Jun 2009 11:33:17 +0000 (11:33 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Wed, 17 Jun 2009 11:26:09 +0000 (11:26 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Tue, 16 Jun 2009 16:55:01 +0000 (16:55 +0000)]
Update from HEAD.

15 years agoUpdates from HEAD.
Dr. Stephen Henson [Tue, 16 Jun 2009 16:39:20 +0000 (16:39 +0000)]
Updates from HEAD.

15 years agoUpdate from 0.9.8-stable.
Dr. Stephen Henson [Mon, 15 Jun 2009 15:00:19 +0000 (15:00 +0000)]
Update from 0.9.8-stable.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Mon, 15 Jun 2009 11:23:33 +0000 (11:23 +0000)]
Update from HEAD.

15 years agoTwo digits is not wide enough.
Ben Laurie [Sun, 14 Jun 2009 10:23:29 +0000 (10:23 +0000)]
Two digits is not wide enough.

15 years agoMake depend.
Ben Laurie [Sun, 14 Jun 2009 02:37:22 +0000 (02:37 +0000)]
Make depend.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Sat, 13 Jun 2009 20:47:09 +0000 (20:47 +0000)]
Update from HEAD.

15 years agoStop gcc bracket warning.
Dr. Stephen Henson [Fri, 5 Jun 2009 14:57:10 +0000 (14:57 +0000)]
Stop gcc bracket warning.

15 years agoStop warning if dtls disabled.
Dr. Stephen Henson [Fri, 5 Jun 2009 14:56:48 +0000 (14:56 +0000)]
Stop warning if dtls disabled.

15 years agoPR: 1950
Dr. Stephen Henson [Fri, 5 Jun 2009 14:46:49 +0000 (14:46 +0000)]
PR: 1950
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
Reviewed by: steve@openssl.org

DTLS fragment retransmission bug.

15 years agoNot always used.
Ben Laurie [Fri, 5 Jun 2009 08:35:54 +0000 (08:35 +0000)]
Not always used.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Tue, 2 Jun 2009 11:23:30 +0000 (11:23 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Tue, 2 Jun 2009 11:06:28 +0000 (11:06 +0000)]
Update from HEAD.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Mon, 1 Jun 2009 12:14:15 +0000 (12:14 +0000)]
Update from HEAD.

15 years agoPR: 1921
Dr. Stephen Henson [Sun, 31 May 2009 17:11:24 +0000 (17:11 +0000)]
PR: 1921
Submitted by: Michael Tuexen <tuexen@fh-muenster.de>
Reviewed by: steve@openssl.org

Add ECDHE and PSK support to DTLS.

15 years agoEnsure canonical encodings of X509_NAME structures are valid.
Dr. Stephen Henson [Sat, 30 May 2009 18:10:59 +0000 (18:10 +0000)]
Ensure canonical encodings of X509_NAME structures are valid.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Fri, 29 May 2009 18:58:59 +0000 (18:58 +0000)]
Update from HEAD.

15 years agoUpdate from 0.9.8-stable.
Dr. Stephen Henson [Fri, 29 May 2009 14:02:30 +0000 (14:02 +0000)]
Update from 0.9.8-stable.

15 years agoNeed definition of struct timeval for dtls1.h which broke WIN32 builds,
Dr. Stephen Henson [Thu, 28 May 2009 20:53:16 +0000 (20:53 +0000)]
Need definition of struct timeval for dtls1.h which broke WIN32 builds,
so include winsock.h. (might be a cleaner way to do this...)

15 years agoUpdate ordinals and sync with 0.9.8
Dr. Stephen Henson [Thu, 28 May 2009 20:49:29 +0000 (20:49 +0000)]
Update ordinals and sync with 0.9.8

15 years agomake errors
Dr. Stephen Henson [Thu, 28 May 2009 20:45:26 +0000 (20:45 +0000)]
make errors

15 years agoSubmitted by: Artem Chuprina <ran@cryptocom.ru>
Dr. Stephen Henson [Thu, 28 May 2009 18:10:47 +0000 (18:10 +0000)]
Submitted by: Artem Chuprina <ran@cryptocom.ru>
Reviewed by: steve@openssl.org

Fix to match latest GOST in TLS draft.

15 years agoAdd CHANGES entries from 0.9.8-stable.
Dr. Stephen Henson [Mon, 18 May 2009 17:37:13 +0000 (17:37 +0000)]
Add CHANGES entries from 0.9.8-stable.

15 years agoDelete line which should have gone with PR#1922.
Dr. Stephen Henson [Mon, 18 May 2009 16:11:58 +0000 (16:11 +0000)]
Delete line which should have gone with PR#1922.

15 years agoPR: 1929
Dr. Stephen Henson [Sun, 17 May 2009 16:04:21 +0000 (16:04 +0000)]
PR: 1929
Submitted by: Michael Tuexen <tuexen@fh-muenster.de>
Approved by: steve@openssl.org

Updated DTLS MTU bug fix.

15 years agoRevert previous MTU patch from PR#1929
Dr. Stephen Henson [Sun, 17 May 2009 15:57:51 +0000 (15:57 +0000)]
Revert previous MTU patch from PR#1929

15 years agoPR: 1599
Dr. Stephen Henson [Sun, 17 May 2009 14:48:02 +0000 (14:48 +0000)]
PR: 1599

Reformat PKCS12_parse manual page, document return values.

15 years agoStupid typo
Richard Levitte [Sun, 17 May 2009 07:22:15 +0000 (07:22 +0000)]
Stupid typo

15 years agoPR: 1931
Dr. Stephen Henson [Sat, 16 May 2009 16:22:11 +0000 (16:22 +0000)]
PR: 1931
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
Approved by: steve@openssl.org

Fix fragment handling memory leak.

15 years agoPR: 1930
Dr. Stephen Henson [Sat, 16 May 2009 16:17:46 +0000 (16:17 +0000)]
PR: 1930
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
Approved by: steve@openssl.org

Limit size of DTLS record buffer queue.

15 years agoDisable ECDHE in DTLS in a cleaner way.
Dr. Stephen Henson [Sat, 16 May 2009 11:16:15 +0000 (11:16 +0000)]
Disable ECDHE in DTLS in a cleaner way.

15 years agoMake the stuff compile again, fix missing prototype warnings.
Dr. Stephen Henson [Sat, 16 May 2009 11:14:55 +0000 (11:14 +0000)]
Make the stuff compile again, fix missing prototype warnings.

15 years agoUpdate from HEAD.
Dr. Stephen Henson [Fri, 15 May 2009 23:07:41 +0000 (23:07 +0000)]
Update from HEAD.

15 years agoPR: 1922
Dr. Stephen Henson [Fri, 15 May 2009 22:58:13 +0000 (22:58 +0000)]
PR: 1922
Submitted by: Robin Seggelmann <seggelmann@fh-muenster.de>
Approved by: steve@openssl.org

DTLS Timer bug fix.

15 years agoPR: 1925
Dr. Stephen Henson [Fri, 15 May 2009 22:50:12 +0000 (22:50 +0000)]
PR: 1925
Submitted by: "Green, Paul" <Paul.Green@stratus.com>
Approved by: steve@openssl.org

VOS extended name support.

15 years agoFunctional VMS changes submitted by sms@antinode.info (Steven M. Schweda).
Richard Levitte [Fri, 15 May 2009 16:37:08 +0000 (16:37 +0000)]
Functional VMS changes submitted by sms@antinode.info (Steven M. Schweda).
Thank you\!
(note: not tested for now, a few nightly builds should give indications though)

15 years agoHave mkdef.pl also handle VAX and Non-VAX differences for VMS
Richard Levitte [Fri, 15 May 2009 16:01:42 +0000 (16:01 +0000)]
Have mkdef.pl also handle VAX and Non-VAX differences for VMS

15 years agoAdd a comment about libeay.num and ssleay.num
Richard Levitte [Fri, 15 May 2009 16:00:08 +0000 (16:00 +0000)]
Add a comment about libeay.num and ssleay.num

15 years agox86[_64]cpuid.pl: update from HEAD.
Andy Polyakov [Thu, 14 May 2009 18:25:29 +0000 (18:25 +0000)]
x86[_64]cpuid.pl: update from HEAD.

15 years agoPR: 1921
Dr. Stephen Henson [Wed, 13 May 2009 16:25:35 +0000 (16:25 +0000)]
PR: 1921
Submitted by: steve@openssl.org

Our DTLS implementation doesn't currently handle ECDHE so don't include
unsupported ciphers in client hello.

15 years agoPrint out DTLS versions too.
Dr. Stephen Henson [Wed, 13 May 2009 16:24:12 +0000 (16:24 +0000)]
Print out DTLS versions too.

15 years agoPR: 1923
Dr. Stephen Henson [Wed, 13 May 2009 11:51:30 +0000 (11:51 +0000)]
PR: 1923
Submitted by: Daniel Mentz <daniel.m@sent.com>, Robin Seggelmann <seggelmann@fh-muenster.de>
Approved by: steve@openssl.org

Don't access freed data structure.

15 years agoPR: 1924
Dr. Stephen Henson [Wed, 13 May 2009 11:32:24 +0000 (11:32 +0000)]
PR: 1924
Submitted by: "Green, Paul" <Paul.Green@stratus.com>
Approved by: steve@openssl.org

Fix _POSIX_C_SOURCE usage.

15 years agoe_padlock.c: update from HEAD.
Andy Polyakov [Tue, 12 May 2009 20:24:23 +0000 (20:24 +0000)]
e_padlock.c: update from HEAD.

15 years agoTypo.
Dr. Stephen Henson [Thu, 7 May 2009 16:26:44 +0000 (16:26 +0000)]
Typo.

15 years agoTypo.
Dr. Stephen Henson [Wed, 6 May 2009 16:58:27 +0000 (16:58 +0000)]
Typo.

15 years agoAdd debug-VC-WIN32 target and let mk1mf.pl auto detect it, update docs.
Dr. Stephen Henson [Wed, 6 May 2009 16:54:25 +0000 (16:54 +0000)]
Add debug-VC-WIN32 target and let mk1mf.pl auto detect it, update docs.

15 years agoSelect updates from HEAD
Richard Levitte [Wed, 6 May 2009 14:03:24 +0000 (14:03 +0000)]
Select updates from HEAD

15 years agoDon't use -D_CRT_NONSTDC_NO_DEPRECATE, fix bio_lcl.h instead.
Dr. Stephen Henson [Wed, 6 May 2009 10:23:39 +0000 (10:23 +0000)]
Don't use -D_CRT_NONSTDC_NO_DEPRECATE, fix bio_lcl.h instead.

15 years agoConfigure: update from HEAD (Camellia assembler in VC-WIN64A, CAPI engine
Andy Polyakov [Tue, 5 May 2009 19:25:53 +0000 (19:25 +0000)]
Configure: update from HEAD (Camellia assembler in VC-WIN64A, CAPI engine
in mingw64).

15 years agoec_mult.c: update from HEAD (Win64 compile warnings).
Andy Polyakov [Tue, 5 May 2009 19:23:45 +0000 (19:23 +0000)]
ec_mult.c: update from HEAD (Win64 compile warnings).

15 years agocryptlib.c: update from HEAD.
Andy Polyakov [Tue, 5 May 2009 19:23:14 +0000 (19:23 +0000)]
cryptlib.c: update from HEAD.

15 years agoperlasm: update from HEAD.
Andy Polyakov [Tue, 5 May 2009 19:21:12 +0000 (19:21 +0000)]
perlasm: update from HEAD.

15 years agoe_capi.c: update from HEAD.
Andy Polyakov [Tue, 5 May 2009 19:17:00 +0000 (19:17 +0000)]
e_capi.c: update from HEAD.

15 years agoUpdate from HEAD
Richard Levitte [Tue, 5 May 2009 08:46:30 +0000 (08:46 +0000)]
Update from HEAD

15 years agoIf an SSLv2 method is explicitly asked for use the SSLv2 cipher string:
Dr. Stephen Henson [Wed, 29 Apr 2009 14:12:54 +0000 (14:12 +0000)]
If an SSLv2 method is explicitly asked for use the SSLv2 cipher string:
assume an application *really* wants SSLv2 if they do that.

Otherwise stick with the default which excludes all SSLv2 cipher suites.

15 years agoTypo.
Dr. Stephen Henson [Tue, 28 Apr 2009 22:35:42 +0000 (22:35 +0000)]
Typo.

15 years agoPR: 1629
Dr. Stephen Henson [Tue, 28 Apr 2009 22:01:53 +0000 (22:01 +0000)]
PR: 1629
Submitted by: Kaspar Brand <ossl-rt@velox.ch>
Approved by: steve@openssl.org

Don't use extensions if using SSLv3: this chokes some broken servers.

15 years agoPR: 1914
Dr. Stephen Henson [Tue, 28 Apr 2009 21:56:04 +0000 (21:56 +0000)]
PR: 1914

Make safestack work with C++.

15 years agoUpdate from HEAD.
Richard Levitte [Tue, 28 Apr 2009 13:00:50 +0000 (13:00 +0000)]
Update from HEAD.

15 years agov3_alt.c: otherName parsing fix from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:37:23 +0000 (19:37 +0000)]
v3_alt.c: otherName parsing fix from HEAD.

Submitted by: Love Hoernquist Aastrand

15 years agoVC-32.pl: update from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:32:13 +0000 (19:32 +0000)]
VC-32.pl: update from HEAD.

15 years agotest_padlock: update from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:31:52 +0000 (19:31 +0000)]
test_padlock: update from HEAD.

15 years agosha*-s390x.pl: minor update from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:31:30 +0000 (19:31 +0000)]
sha*-s390x.pl: minor update from HEAD.

15 years agorc4-x86_64.pl: Win64 SEH update from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:31:04 +0000 (19:31 +0000)]
rc4-x86_64.pl: Win64 SEH update from HEAD.

15 years agob_sock.c: readability update from HEAD.
Andy Polyakov [Mon, 27 Apr 2009 19:30:36 +0000 (19:30 +0000)]
b_sock.c: readability update from HEAD.

15 years agoUpdates from HEAD
Richard Levitte [Mon, 27 Apr 2009 00:08:50 +0000 (00:08 +0000)]
Updates from HEAD

15 years agoUpdate docs: can use backslashes now.
Dr. Stephen Henson [Sun, 26 Apr 2009 15:50:55 +0000 (15:50 +0000)]
Update docs: can use backslashes now.

15 years agoPrevent warning if WINCE not used.
Dr. Stephen Henson [Sun, 26 Apr 2009 15:04:06 +0000 (15:04 +0000)]
Prevent warning if WINCE not used.

15 years agoAdd extra no deprecate flags in Configure.
Dr. Stephen Henson [Sun, 26 Apr 2009 14:54:23 +0000 (14:54 +0000)]
Add extra no deprecate flags in Configure.

15 years agoThis at least break WIN32 which doesn't have sys/time.h might need to make
Dr. Stephen Henson [Sun, 26 Apr 2009 14:53:58 +0000 (14:53 +0000)]
This at least break WIN32 which doesn't have sys/time.h might need to make
this a bit more generous later...

15 years agoAdd local symbol hacks for OpenVMS
Richard Levitte [Sun, 26 Apr 2009 12:26:04 +0000 (12:26 +0000)]
Add local symbol hacks for OpenVMS

15 years agoCast to avoid signedness confusion
Richard Levitte [Sun, 26 Apr 2009 12:16:12 +0000 (12:16 +0000)]
Cast to avoid signedness confusion

15 years agoUpdates from HEAD
Richard Levitte [Sun, 26 Apr 2009 11:35:58 +0000 (11:35 +0000)]
Updates from HEAD

15 years agoMake no-rsa, no-dsa and no-dh compile again.
Dr. Stephen Henson [Thu, 23 Apr 2009 17:16:40 +0000 (17:16 +0000)]
Make no-rsa, no-dsa and no-dh compile again.

15 years agoMake no-ec work
Dr. Stephen Henson [Thu, 23 Apr 2009 16:25:00 +0000 (16:25 +0000)]
Make no-ec work

15 years agoMake no-gost work properly.
Dr. Stephen Henson [Thu, 23 Apr 2009 16:12:09 +0000 (16:12 +0000)]
Make no-gost work properly.

15 years agoSome no-ec fixes (not complete yet).
Dr. Stephen Henson [Thu, 23 Apr 2009 15:24:27 +0000 (15:24 +0000)]
Some no-ec fixes (not complete yet).

15 years agoCryptoAPI engine only exists on WIN32.
Dr. Stephen Henson [Wed, 22 Apr 2009 17:36:45 +0000 (17:36 +0000)]
CryptoAPI engine only exists on WIN32.

15 years agoPR: 1902
Dr. Stephen Henson [Wed, 22 Apr 2009 17:31:04 +0000 (17:31 +0000)]
PR: 1902

Add ecdsa/ecdh algorithms to default for speed utility.

15 years agoFind openssl utility if on the PATH.
Dr. Stephen Henson [Wed, 22 Apr 2009 16:50:42 +0000 (16:50 +0000)]
Find openssl utility if on the PATH.

15 years agoPR: 1903
Dr. Stephen Henson [Wed, 22 Apr 2009 16:21:20 +0000 (16:21 +0000)]
PR: 1903
Submitted by: "Paul Smedley" <pauldespam@despamsmedley.id.au>
Approved by: steve@openssl.org

OS/2 fixes (excludes Makefile.shared patch for now).

15 years agoFix WIN32 warnings.
Dr. Stephen Henson [Wed, 22 Apr 2009 15:40:54 +0000 (15:40 +0000)]
Fix WIN32 warnings.

15 years agoFix WIN32 warning.
Dr. Stephen Henson [Wed, 22 Apr 2009 12:17:02 +0000 (12:17 +0000)]
Fix WIN32 warning.

15 years agoAnother kerberos fix.
Dr. Stephen Henson [Tue, 21 Apr 2009 22:30:54 +0000 (22:30 +0000)]
Another kerberos fix.

15 years agoChange version to beta3-dev
Dr. Stephen Henson [Tue, 21 Apr 2009 22:27:41 +0000 (22:27 +0000)]
Change version to beta3-dev

15 years agoSome fixes for kerberos builds.
Dr. Stephen Henson [Tue, 21 Apr 2009 22:20:12 +0000 (22:20 +0000)]
Some fixes for kerberos builds.

15 years agoFix RFC num. OpenSSL_1_0_0-beta2
Dr. Stephen Henson [Tue, 21 Apr 2009 15:42:01 +0000 (15:42 +0000)]
Fix RFC num.

15 years agoUpdate STATUS.
Dr. Stephen Henson [Tue, 21 Apr 2009 15:19:15 +0000 (15:19 +0000)]
Update STATUS.